HackingCustomer Data InvolvedEmployee Data InvolvedPHIIDENTITY_GOVERNMENTIDENTITY_BASICHEALTH_BASICMediumContained
Community Medical Centers
bd_45d13dc4f2513a14 · schema v1 · pii pii-v1
Full breach record for Community Medical Centers →Community Medical Centers, Inc. detected unusual network activity on October 10, 2021, and proactively shut down systems. An investigation confirmed an unauthorized third party accessed the network, potentially compromising personally identifiable information (including SSNs) and protected health information for patients in San Joaquin, Solano, and Yolo counties. The organization engaged cybersecurity experts, notified law enforcement, and offered identity monitoring services.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_2a9b84c69baef15fHHS OCRfiled 2021-10-26Verified
- bd_bc9de75eacdce63fMaine State AGfiled 2021-10-29(3d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-546879
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 26, 2021
- Raw hash
- c34ae9ea93b49c23c1b832986c93a30b4e0fabcb5b0ec74b92a211c32ddd23a3
Reporting entity
- Name
- Community Medical Centersnorm: community medical centers
Victim entity
- Name
- Community Medical Centersnorm: community medical centers
Incident
- Discovered
- Oct 10, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIIDENTITY_GOVERNMENTIDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 16 days(16 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.