Medusind, Inc.
ent_2dfd083d20dd4eaf894414ef
Disclosures
17
State AG · HHS OCR · 15 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
701,475
nationwide · HHS OCR FL
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Medusind, Inc.
- Normalized
- medusind— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (17)newest first
- Maryland State AGas victim2026-05-19
Medusind, Inc., a revenue cycle management company, discovered suspicious activity on December 29, 2023. Investigation revealed a cybercriminal may have obtained files containing personal information for approximately 360,934 individuals nationwide, including 1,037 Maryland residents. Affected data includes PHI, health insurance info, payment info, and government IDs. Medusind took systems offline, engaged forensics, notified law enforcement, and offers 24 months of identity monitoring.
- Rhode Island State AGas victim2025-02-20
Medusind, Inc., a revenue cycle management company, notified the Rhode Island Attorney General of a cybersecurity incident discovered on December 29, 2023. Suspicious activity led to the offline of systems and an FBI-reported investigation. Files containing patient PII (SSN, medical records, payment info) were copied. Medusind notified 81 RI residents starting January 7, 2025, offering 24 months of identity monitoring.
- New Hampshire State AGas victim2025-02-18
Medusind, Inc. filed a supplemental notice with the New Hampshire Attorney General regarding a data security incident. The company notified approximately 1,677 New Hampshire residents and 691,192 individuals nationwide. The filing is a follow-up to a January 7, 2025 letter. Specific data types and the nature of the breach are not detailed in this supplemental notice.
- Oregon State AGas victim2025-02-11
Medusind, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2025-02-11. The breach occurred during 12/29/2023 - 1/7/2024. The breach was discovered on 12/29/2023. 691,192 individuals were affected. Notice was sent on 1/7/2025.
- California State AGas victim2025-02-11
Medusind, Inc., a revenue cycle management company, experienced a cyber incident on December 29, 2023, where unauthorized access to files containing personal health, financial, and government identification information occurred. The company discovered the suspicious activity on the same day, took systems offline, and engaged forensic investigators. Evidence suggests data was exfiltrated. Affected individuals are offered two years of identity monitoring.
- Washington State AGas victim2025-02-11
Medusind, Inc. reported a ransomware cyberattack affecting 511 Washington residents. The incident occurred on December 29, 2023, and was discovered the same day. Compromised data included PHI, government IDs, financial account info, and PII. Medusind engaged forensic investigators and offered two years of identity monitoring via Kroll.
- Massachusetts State AGas victim2025-01-08
Medusind, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-01-08. 1,209 Massachusetts residents were affected.
- South Carolina State AGas victim2025-01-08
Medusind, Inc., a revenue cycle management company, disclosed a cyber incident on December 29, 2023, where a cybercriminal accessed files containing personal and health information. Medusind took systems offline, hired forensic investigators, and offered two years of identity monitoring via Kroll to affected individuals.
- Delaware State AGas victim2025-01-07
Medusind, Inc., a revenue cycle management company, experienced a cyber incident on December 29, 2023, where a cybercriminal may have accessed files containing personal information including health insurance, payment, health, and government identification data. Medusind took systems offline, engaged forensic investigators, and is offering two years of identity monitoring to affected individuals.
- California State AGas victim2025-01-07
Medusind, Inc., a revenue cycle management company, experienced a cyber incident on December 29, 2023, which was discovered the same day. A cybercriminal may have obtained copies of files containing personal information, including health insurance/billing data, payment information, health information, government IDs (SSN, driver's license), and other PII. Medusind took systems offline, engaged forensic investigators, and is offering two years of identity monitoring via Kroll.
- Indiana State AGas victim2025-01-07
Medusind Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2023-12-29 and was reported on 2025-01-07. 2,241 Indiana residents were affected. 319,965 individuals affected in total.
- Nebraska State AGas victim2025-01-07
Medusind, Inc., a revenue cycle management company, experienced a cyber incident on December 29, 2023, where unauthorized access to its IT network resulted in the potential exposure of personal, health, and financial information belonging to individuals. Medusind took affected systems offline, engaged a forensic firm, and is offering two years of complimentary identity monitoring via Kroll to affected individuals.
- Oregon State AGas victim2025-01-07
Medusind, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2025-01-07. 360,934 individuals were affected.
- Iowa State AGas reporting2025-01-07
Medusind, Inc. notified the Iowa AG of a cyber incident affecting Aspen Dental Inc. patients. Discovered Dec 29, 2023, suspicious activity led to unauthorized access and copying of files containing PHI, SSNs, and financial data. 2,382 Iowa residents notified Jan 7, 2025. Medusind engaged forensic investigators, reported to the FBI, and offers 24 months of identity monitoring.
- FLORIDAHHS OCRas victim2025-01-07
Medusind Inc. reported to HHS on 2025-01-07 a Hacking/IT Incident affecting 701475 individuals. Breached information located on Network Server. Business Associate present.
- Maine State AGas victim2025-01-07
Medusind, Inc., a healthcare revenue cycle management company, disclosed a cyber incident on December 29, 2023, affecting 360,934 individuals. The breach involved unauthorized access to files containing PHI, government IDs, financial data, and PII. Medusind engaged forensic investigators, secured systems, and offered two years of credit monitoring via Kroll.
- Illinois State AGas victim2025-01-01
MEDUSIND, INC filed a data-breach notice with the Illinois Attorney General in January 2025 (case 25-01-009). The register records the breach as discovered on December 29, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.