Cyber Incident Victim: ESO
Date:
Nov 2022
Location:
Canada
Summary
A cybersecurity incident affecting a Texas-based provider of record management software for emergency responders prompted the shutdown of its data collection platform utilized by Canadian paramedic services, including Peterborough County-City Paramedics. The company's security team detected anomalous activity, leading to the proactive isolation of systems to contain potential risks. Authorities confirmed no evidence suggesting unauthorized access to or compromise of patient medical or personal information stored within the platform. The disruption temporarily impacted the affected agency's ability to capture and manage patient data through the software but did not indicate broader leakage of sensitive records.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On November 14, 2022, ESO Solutions, a Texas-based provider of record management system software for emergency responders and paramedic agencies, experienced a cybersecurity incident. The company’s security team detected anomalous activity that evening, triggering an immediate response. This prompted ESO to take its Interdev data collection platform offline as a containment measure. The platform was used by Canadian paramedic services, including Peterborough County-City Paramedics, to capture and manage patient care records during emergency responses. Service disruption occurred for Peterborough Paramedics and other undisclosed agencies relying on the system for operational data management. No specific technical details about the nature of the security alert or intrusion methodology were disclosed publicly.

Peterborough Paramedics Chief Randy Mellow confirmed the incident’s operational impact but asserted no evidence indicated compromise of medical or personal information. The shutdown prevented ongoing data collection during the outage period, though historical records remained inaccessible. ESO did not release information regarding incident scope beyond confirming the platform’s takedown. No ransomware claims, data extortion threats, or leak sites referenced the event at the time of reporting. The absence of U.S. media coverage suggested the incident primarily affected Canadian clients. Restoration timelines and forensic investigation outcomes were not detailed in available sources. Mellow maintained public assurance regarding data confidentiality despite the ongoing service interruption.
