CODAC Behavioral Healthcare Details

    Organization Logo

    CODAC Behavioral Healthcare

    Cranston, Rhode Island398 employees • Healthcare

    https://www.codac.org/
    United States

    Industry

    Healthcare

    Security Incidents

    1

    CODAC Behavioral Healthcare is a nonprofit organization dedicated to providing a comprehensive range of behavioral health services. Founded in 1971, the organization offers programs addressing mental health, substance use disorders, and other related issues. CODAC’s services include outpatient treatment, medication-assisted treatment (MAT), counseling, case management, and prevention services. They aim to support individuals and families in their recovery journey by offering tailored programs that meet the specific needs of their clients.

    Over its history, CODAC has grown to include multiple ...
    Show more

    Security Incidents

    CODAC Behavioral Healthcare Breach of Aug 2024
    Severity Score
    Significant to High

    Type

    Ransomware Attack

    Summary

    CODAC Behavioral Healthcare experienced a cyber security incident involving the Qilin ransomware group. This group, which has a track record of targeting healthcare organizations, listed CODAC as one of its most recent victims. CODAC is a prominent nonprofit in Rhode Island that provides outpatient treatment for Opioid Use Disorder (OUD) with several community-based locations.

    The attack led to the unauthorized acquisition of sensitive information, including financial data, pictures of ID cards, staff lists with Social Security Numbers (SSNs), and healthcare cards. This pattern aligns with ev...
    Show more

    Severity

    The recent ransomware attack on CODAC Behavioral Healthcare orchestrated by the Qilin ransomware group resulted in significant data exfiltration. The compromised data includes financial information, pictures of ID cards, employees' Social Security Numbers (SSNs), and healthcare cards. CODAC, being a major provider of opioid use disorder treatment in Rhode Island, serves a highly vulnerable population, which heightens the severity of this breach.

    Given the sensitive nature of the data stolen and the impact on both the organization and its patients, this incident has serious repercussions in t...
    Show more

    Impact

    The Qilin ransomware group targeted CODAC Behavioral Healthcare, resulting in a significant data breach. Sensitive customer data, including financial information, ID card images, lists of staff members with their Social Security Numbers (SSNs), and healthcare cards were exposed. Not only did this compromise the privacy of individuals associated with CODAC, but it also potentially affected service continuity given the nature of their work in opioid use disorder treatment and behavioral healthcare.

    Although there was no specific mention of systems or services being taken offline, the dual threa...
    Show more