HackingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICPHIHEALTH_BASICLowContained
LA CLINICA DE LA RAZA, INC.
bd_3ad98c22fac9db5d · schema v1 · pii pii-v1
Full breach record for LA CLINICA DE LA RAZA, INC. →La Clinica de La Raza reported unauthorized access to employee email accounts from January 24, 2023, to February 8, 2023. The organization became aware of suspicious activity on February 8, 2023. Patient health records were not accessed. Affected individuals' names and other personal information may have been viewed. The organization secured accounts, engaged forensic investigators, and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-572739
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 1, 2023
- Raw hash
- d6f3f4569af00cf9974e303242cf26a96ace88994acf0c6f3eb59823272c30fa
Reporting entity
- Name
- LA CLINICA DE LA RAZA, INC.norm: la clinica de la raza
Victim entity
- Name
- LA CLINICA DE LA RAZA, INC.norm: la clinica de la raza
Incident
- Discovered
- Feb 8, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICPHIHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 29 weeks(205 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.