HackingHealthcareProfessional ServicesHealthcareCapture Stored DataData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIPHIIDENTITY_BASICHEALTH_BASICLowContained
Cencora
bd_0d319f20684cf4c8 · schema v1 · pii pii-v1
Full breach record for Cencora →On February 21, 2024, Cencora, Inc. learned that data from its information systems had been exfiltrated. The breach involved personal information held by its Lash Group affiliate in connection with patient support programs, including names, addresses, dates of birth, health diagnoses, and medications/prescriptions. Cencora engaged law enforcement, cybersecurity experts, and outside counsel. Affected individuals were offered 24 months of Experian IdentityWorks credit monitoring.
This filing is one of 40 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_963c68d0dad2686dVermont State AGfiled 2024-06-05Verified
- bd_9c16b27470822eb3Vermont State AGfiled 2024-06-05Candidate
- bd_b9a4dc86f510194fCalifornia State AGfiled 2024-06-03(2d gap)Verified
- bd_9af1f290af4dcb0cCalifornia State AGfiled 2024-06-10(5d gap)Candidate
Show 6 more filings ↓Show fewer ↑up to 33d gap
- bd_225434215343f740Vermont State AGfiled 2024-05-31(5d gap)Verified
- bd_2f627285f2f041f2California State AGfiled 2024-05-31(5d gap)Verified
- bd_3e2ae0a57615759cCalifornia State AGfiled 2024-05-31(5d gap)Candidate
- bd_13b5600dd58fb13cCalifornia State AGfiled 2024-06-20(15d gap)Verified
- bd_1c074a8994b49b5fVermont State AGfiled 2024-06-20(15d gap)Verified
- bd_3fed8c71645b986bCalifornia State AGfiled 2024-07-08(33d gap)Candidate
Showing first 10 of 39 linked disclosures.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-586435
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 5, 2024
- Raw hash
- ab7a121f13a4b8a6daca2a1af573c6dca42dd06c6627b9fd64d40f12de066d85
Reporting entity
- Name
- Bausch Healthnorm: bausch health
- Domain
- bauschhealth.com
Victim entity
- Name
- Cencoranorm: cencora
- Domain
- cencora.com
- Industry
- HealthcarellmProfessional Servicesllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIPHIIDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1119 Automated Collection
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.