United States
USA
Rhode Island was notified on 05/12/2024 of suspicious activity in the Deloitte-managed RIBridges environment, later confirmed as a breach. Subsequent investigation found unauthorized use of Deloitte credentials, access to multiple systems and exfiltration of files. The State took RIBridges offline on 13/12/2024; customers could not access the portal or mobile app, and only a limited phased relaunch began in late January 2025, materially interrupting digital delivery of health and human-services benefits.
Estimated severity
83 / 100
Source reliability
95 / 100
Approximate Date
05/12/2024
Targeted Company
STATE OF RHODE ISLAND
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
United States
USA
No other affected countries reported
Target country
United States
Affected countries
Impacted regions
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Incident Sources
Please rotate your phone