MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICPHIHEALTH_BASICMediumContained
One Community Health
bd_263ec385e615791b · schema v1 · pii pii-v1
Full breach record for One Community Health →One Community Health experienced a ransomware attack between April 19-20, 2021. The incident resulted in the exfiltration of patient data, including Social Security numbers, names, dates of birth, addresses, and health information. The organization isolated affected systems, engaged cybersecurity experts, and offered one year of credit monitoring to affected individuals. No identity fraud was reported.
Leak gap clock⏱ Leak >30d31 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
A leak claim by pysa about this victim predates this filing by 70 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_35ad13c84ba11aa9Washington State AGfiled 2021-11-22Verified
- bd_649bee50f83e02dbOregon State AGfiled 2021-11-22Verified
- bd_7192441b0b10f5efHHS OCRfiled 2021-11-22Verified
- bd_e0a5b3d61a15dd39Montana State AGfiled 2021-11-22Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-547830
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 22, 2021
- Raw hash
- 12c05f7e0c00488ff0b58cd7117d7feb6031db3d54a84578344a525d885cf266
Reporting entity
- Name
- One Community Healthnorm: one community health
Victim entity
- Name
- One Community Healthnorm: one community health
Incident
- Discovered
- Apr 20, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICPHIHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 31 weeks(216 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.