PhysicalTheftEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
U.S. HealthWorks
bd_204810e76da612bc · schema v1 · pii pii-v1
Full breach record for U.S. HealthWorks →U.S. HealthWorks reported the theft of an employee's laptop on April 21, 2015, discovered on April 22, 2015. The laptop was password-protected but not encrypted. It may have contained employee names, addresses, dates of birth, job titles, and Social Security numbers. The company offered one year of Experian ProtectMyID Alert and is enhancing laptop encryption policies.
California clockDiscovered Apr 22, 2015 → Notified May 28, 201536d ✓ CA 60-day OK5 weeks discovery → filing
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-56185
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 29, 2015
- Raw hash
- 108e88be51a4a01d47543f211d4bc1e7e169443724dbc2de6d913f572c4dc186
Reporting entity
- Name
- U.S. HealthWorksnorm: us healthworks
Victim entity
- Name
- U.S. HealthWorksnorm: us healthworks
Incident
- Discovered
- Apr 22, 2015
- Materiality determined
- —
- Notification sent
- May 28, 2015
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
Compliance
- Time to disclose
- 5 weeks(37 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 36d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Apr 22, 2015→ Notified: May 28, 201536d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.