Apria Healthcare LLC
bd_030aa96547f5e4da · schema v1 · pii pii-v1
Full breach record for Apria Healthcare LLC →6 incidents on fileApria Healthcare, a provider of home respiratory services, notified the NH AG of a cyber incident affecting 3 NH residents. On Aug 5, 2016, an employee's email account was accessed via unauthorized means (likely phishing). Data exposed included names, DOB, SSN, diagnosis, and medical record numbers. No data exfiltration was found. Notices mailed Oct 4, 2016. Credit monitoring offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 5, 2016
Discovered
Oct 20, 2016
Filed
vs. sector median
1 wks faster
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- California State AGbd_bea31cb8de9863712016-10-20Verified
- HHS OCRbd_0c096a0a3641dc002016-10-04 · +16dVerified
Filing propagation · 3 filings · 2 states
View merged incident ↗Pattern: first filing Oct 4 (CA), last Oct 20 (NH) — a 16-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.