Clustered 5 filings across 5 jurisdictions · filing window Nov 16, 2022 → Nov 17, 2022. View entity profile → Other incidents for this victim →
incident inc_f61ee3ec2f7f4b23 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
Health (basic) · Identity (basic) · Government ID
CA GA ID ME MT
HHS OCR · State AG
Earliest sighting first · deep chronology in Litigation Timeline
Jun 3, 2022
When the intrusion reportedly occurred, per the linked filings
Jun 3, 2022
Reported by IDAHO AG filing
Oct 17, 2022
Reported by CALIFORNIA AG, MAINE AG, HHS OCR filings
Innovative Service Technology Management Services, Inc. (GA, Health Plan) reported to HHS on 2022-11-17 a ransomware attack affecting the PHI of 2,654 individuals. Breached information was located on a Network Server. PHI involved included names, dates of birth, addresses, drivers' license and Social Security numbers, and financial information. The CE notified HHS, affected individuals, and the media, and subsequently strengthened its administrative, technical, and security safeguards.
Affected (this filing): 2,654
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Innovative Service Technology Management Services, Inc. reported a ransomware attack on June 3, 2022, discovered on October 17, 2022. Unauthorized actors accessed systems and potentially exfiltrated personal information, including names. The company took systems offline, reset passwords, and implemented enhanced endpoint detection. Law enforcement was notified. Affected individuals were offered credit monitoring via Experian.
Innovative Service Technology Management Services, Inc. (IST) disclosed a ransomware attack on June 3, 2022, which impacted computer systems. An unauthorized actor gained access, potentially acquiring files before encrypting data. IST discovered on October 17, 2022, that personal information (name and government ID numbers) may have been compromised. IST took systems offline, reported to law enforcement, reset passwords, and enhanced endpoint detection. No actual misuse is known.
Innovative Service Technology Management Services, Inc. experienced an external system breach on June 3, 2022, which was later discovered on October 17, 2022. The incident compromised the financial account numbers or credit/debit card numbers of 4 Maine residents. In response, the company provided written notifications to the affected individuals on November 16, 2022, and offered 12 months of identity theft protection services through Experian.
Affected (this filing): 4
Innovative Service Technology Management Services, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2022-11-16. The breach occurred on 6/3/2022. 2 Montana residents were affected.
Affected (this filing): 2