UCLA Health
bd_35a747e70f5a1fbb · schema v1 · pii pii-v1
UCLA Health notified New Hampshire AG of a cyberattack where attackers accessed the network starting Sept 2014. Discovered May 5, 2015. 517 NH residents potentially impacted. Data at risk included names, SSNs, DOBs, medical info. FBI engaged, forensics experts retained. Identity theft services and credit monitoring offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 1, 2014
Begins
May 5, 2015
Discovered
Jul 17, 2015
Filed
vs. sector median
1 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- California State AGbd_0c9ea43643627ff02015-07-17Candidate
- HHS OCRbd_eef61580e59756ac2015-07-17Verified
- Massachusetts State AGbd_a78328bfdfbbe63f2015-07-20 · +3dVerified
- Hawaii State AGbd_5ca3b58d29fa8c482015-07-22 · +5dVerified
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Jul 17 (CA), last Jul 22 (HI) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.