Tobin, Carberry, O'Malley, Riley & Selinger, P.C.
ent_66df32447cc91b8d
Disclosures
10
State AG · HHS OCR · 6 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
47,106
nationwide · HHS OCR CT
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Tobin, Carberry, O'Malley, Riley & Selinger, P.C.
- Normalized
- tobin carberry o malley riley selinger— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- New Hampshire State AGas reporting2024-12-26
Yale New Haven Health notified individuals of a security incident involving its vendor, Tobin, Carberry, O'Malley, Riley & Selinger, P.C. An unauthorized third party accessed TCORS's network from November 10-30, 2023, copying files containing patient information. YNHHS was notified on December 4, 2023. Notices were sent on November 18, 2024, offering identity theft protection services. The incident involved a supply chain compromise where a third-party vendor's credentials were likely used.
- New Hampshire State AGas victim2024-09-09
TCORS, a law firm, issued a supplemental notice to the NH DOJ regarding a cybersecurity incident. Suspicious activity was discovered on Nov 30, 2023. An unauthorized actor accessed systems via a third-party managed device. 6 individuals' names and other PII were impacted. TCORS engaged forensic experts, reset passwords, deployed EDR, and offered credit monitoring.
- Maine State AGas victim2024-08-30
Tobin, Carberry, O'Malley, Riley & Selinger, P.C. reported an external system breach (hacking) on November 29, 2023, discovered on November 30, 2023. The incident impacted 1,662 individuals, including 10 Maine residents. Personal information, including names and other identifiers, was accessed via a third-party managed device. The firm engaged forensic experts, changed passwords, and provided 12 months of credit monitoring.
- New Hampshire State AGas reporting2024-08-19
Supplemental notice regarding a cybersecurity incident at vendor Tobin, Carberry, O'Malley, Riley & Selinger, P.C. (TCORS), a business associate of Yale New Haven Health (YNHH). Unauthorized access occurred Nov 10-30, 2023. TCORS notified YNHH on Dec 4, 2023. YNHH notified 5 impacted individuals on July 19, 2024. Data included PII, SSN, PHI, and bank info. Third-party forensics engaged. Identity theft protection offered.
- Vermont State AGas reporting2024-08-09
Yale New Haven Health (YNHHS) notified consumers of a data breach involving its vendor, Tobin, Carberry, O'Malley, Riley & Selinger, P.C. (TCORS). An unauthorized third party accessed TCORS's network between November 10 and 30, 2023, copying files containing patient PII and PHI, including SSNs, DOBs, and medical history. YNHHS is offering one year of identity theft protection. The incident affected at least 689 Rhode Island residents.
- Indiana State AGas victim2024-07-19
Tobin Carberry O'Malley Riley & Selinger PC reported a data breach to the Indiana Attorney General. 7 Indiana residents were affected.
- New Hampshire State AGas victim2024-06-21
Tobin, Carberry, O'Malley, Riley & Selinger, P.C. (TCORS) reported a ransomware incident discovered on Nov 30, 2023. The attack impacted patient PHI and PII of covered entities. TCORS notified law enforcement, engaged forensic experts, and reset passwords. Notices were mailed to NH residents on June 14, 2024. 22 NH residents were affected.
- Montana State AGas victim2024-06-14
Tobin, Carberry, O'Malley, Riley & Selinger, P.C. notified individuals of a data security incident discovered on November 30, 2023. Unauthorized access to systems resulted in exposure of names, addresses, SSNs, DOBs, diagnosis/treatment info, and some bank account data. The firm engaged forensic experts, reset passwords, deployed endpoint monitoring, and provided credit monitoring services.
- Maine State AGas victim2024-06-14
Tobin, Carberry, O'Malley, Riley & Selinger, P.C. reported an external system breach (hacking) on November 30, 2023, discovered on February 13, 2024. The incident affected 21,887 individuals, including 30 Maine residents. Compromised data included names, addresses, DOBs, SSNs, diagnosis/treatment info, and bank account details. Notices were sent June 14, 2024, offering 12 months of credit monitoring via IDX.
- CONNECTICUTHHS OCRas victim2024-04-17
Tobin, Carberry, O'Malley, Riley & Selinger, P.C. reported to HHS on 2024-04-17 a Hacking/IT Incident affecting 47,106 individuals. Breached information located on Network Server. The business associate experienced a ransomware incident involving PHI (names, addresses, birthdates, SSNs, claims, financial info, diagnoses, lab results, medications). The BA offered free credit monitoring and implemented additional safeguards.