HackingData ExfiltratedCustomer Data InvolvedPHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Aurora Charter Oak Hospital
bd_53bb084a9b70d232 · schema v1 · pii pii-v1
Full breach record for Aurora Charter Oak Hospital →Aurora Charter Oak Hospital notified California residents of an unauthorized access incident occurring between January 27-28, 2024. An external party accessed systems and acquired files containing PHI, including names, DOBs, medical record numbers, services received, and treating physicians. Some records also contained SSNs. The hospital engaged forensic experts, notified law enforcement, and implemented additional security safeguards.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-592904
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 4, 2024
- Raw hash
- fe42de162d22a8fe416bc4e976f00b60aabafd49d924cd0916aefe91a772373d
Reporting entity
- Name
- Signature Healthcare Servicesnorm: signature healthcare
- Domain
- signaturehc.com
Victim entity
- Name
- Aurora Charter Oak Hospitalnorm: aurora charter oak hospital
Incident
- Discovered
- Jan 28, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 36 weeks(250 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.