Cencora, Inc.
bd_23148517c1d14860 · schema v1 · pii pii-v1
Cencora, Inc. reported a cybersecurity incident on February 21, 2024, involving the exfiltration of personal information from its information systems. The breach affected patient support program data, including names, addresses, dates of birth, health diagnoses, and medications. Cencora engaged law enforcement and cybersecurity experts, contained the incident, and offered 24 months of credit monitoring to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 21, 2024
Begins
Feb 21, 2024
Discovered
May 28, 2024
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Indiana State AGbd_41c8127d6d79b2802024-05-28Verified
- Montana State AGbd_ba39db0cd54b85482024-05-28Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.