Cerner Corporation
bd_3a23d77e3f28adfc · schema v1 · pii pii-v2
Full breach record for Cerner Corporation →4 incidents on fileCerner Corporation, an EHR vendor, disclosed a data breach affecting patient information. Unauthorized access occurred on or around January 22, 2025, discovered by Cerner on March 7, 2025. Affected data included names, SSNs, and PHI. Federal law enforcement requested a notification delay. Cerner engaged forensic specialists and law enforcement, offering 24 months of credit monitoring to affected individuals. Notifications were sent in July 2025.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 22, 2025
Begins
Mar 7, 2025
Discovered
Jul 25, 2025
Filed
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- California State AGbd_28ee1e6c3dffc4902025-07-25Candidate
- Oregon State AGbd_84ee1229a46c91d32025-07-25Verified
- Massachusetts State AGbd_9d89cbf05f39075c2025-07-25Verified
- Washington State AGbd_d595530ba42639ae2025-07-25Verified
Show 3 more filings ↓Show fewer ↑up to 7d gap
- South Carolina State AGbd_eb522228bcaccfaa2025-07-25Verified
- Texas State AGbd_80ec506162e7d5792025-07-28 · +3dVerified
- Illinois State AGbd_f238b85559dc3dac2025-08-01 · +7dVerified
Filing propagation · 8 filings · 8 states
View merged incident ↗Pattern: first filing Jul 25 (CA), last Aug 1 (IL) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.