Elmcroft Senior Living, Inc.
bd_121717ac4f1810f7 · schema v1 · pii pii-v1
Full breach record for Elmcroft Senior Living, Inc. →Elmcroft Senior Living, Inc. disclosed a data breach occurring on May 10, 2018, discovered on May 12, 2018. An unauthorized third party accessed servers in Louisville, KY, exposing demographic data, PHI, names, DOBs, addresses, and some SSNs of residents/patients. Elmcroft terminated access, notified law enforcement, and engaged Kroll to provide one year of complimentary identity monitoring and credit monitoring services.
J jump to incidentP pin to compareR raw source
Incident timeline
May 10, 2018
Begins
May 12, 2018
Discovered
Jun 8, 2018
Filed
vs. sector median
9 wks faster
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Massachusetts State AGbd_329bab0b9ea627d92018-06-08Verified
- New Hampshire State AGbd_8e328f0860b758102018-06-08Verified
- Montana State AGbd_8f5f94f192c567b32018-06-08Verified
- California State AGbd_56453ba7eacccb442018-06-01 · +7dVerified
Show 2 more filings ↓Show fewer ↑up to 19d gap
- HHS OCRbd_67168058419f205b2018-05-21 · +18dVerified
- South Carolina State AGbd_168183e6da0cf1692018-06-27 · +19dVerified
Filing propagation · 7 filings · 7 states
View merged incident ↗Pattern: first filing May 21 (TX), last Jun 27 (SC) — a 37-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.