CSIDB logo
Incident

Tessie Cleveland Community Services

Incident posture

Attack window
Jun 2022
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2025-10-18 00:00

Linked entities

Victim
Tessie Cleveland Community Services
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jun 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A mental health clinic experienced unauthorized access to employee email accounts over a two-week period, likely as part of a business fraud attempt rather than targeting individual information. The compromised accounts contained client names, demographic details, health insurance identification numbers, limited care information, and some Social Security numbers. Following discovery, the organization reviewed affected accounts and implemented measures to enhance email and network security.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

4 techniques

Description

On June 30, 2022, Tessie Cleveland Community Services Corp., a California-based mental health clinic, discovered unauthorized access to several employee email accounts. The breach occurred between June 17 and June 30, 2022, spanning approximately two weeks. An investigation determined that an unknown individual gained access to the email accounts during this period. The organization assessed that the intrusion was likely part of an attempt to commit business fraud against Tessie rather than targeting specific individuals' personal information. No evidence suggested the attacker sought patient data as a primary objective. Tessie Cleveland initiated an immediate review of the compromised email accounts to identify affected individuals and assess the scope of exposed information.

The review confirmed that the accessed email accounts contained client information, including names, demographic details, health insurance identification numbers, and limited information regarding care received at Tessie. Social Security numbers were exposed in some instances. The breach impacted 9,747 individuals. Tessie Cleveland stated it found no evidence of actual misuse of the exposed data but undertook measures to enhance the security of its email and network environment. Notification letters were not explicitly mentioned in the disclosure, but the organization affirmed its commitment to securing systems against future incidents. The clinic emphasized its belief that the attacker’s intent centered on financial fraud against the organization rather than identity theft targeting patients.

Sources

Sources available to members: 1 source.

CSIDB