DisclosureLens
HackingHealthcareProfessional ServicesHealthcareStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)Government IDHealth (basic)PHIMinorHighContained

Onondaga County Chapter NYSARC, Inc.

bd_54720dd56de17530 · schema v1 · pii pii-v1

Severity

High

Discovered

Sep 21, 2021

Filed

Nov 30, 2021

To disclose

10 weeks

Affected · nationwide

8,5201 in this filing

Linked

5 filings

Confidence

66%
Full breach record for Onondaga County Chapter NYSARC, Inc.

Onondaga County Chapter, NYSARC, Inc. experienced unauthorized network access around August 15, 2021, discovered on September 21, 2021. Approximately 8,520 individuals were affected. Data included names, SSNs, DOBs, addresses, and PHI (diagnoses, medications). The organization engaged third-party specialists, reset passwords, notified HHS, and provided credit monitoring.

Incident timeline

undetected · 37 days
discovery → filing · 10 weeks / 70 days

Aug 15, 2021

Begins

Sep 21, 2021

Discovered

Nov 30, 2021

Filed

vs. sector median

3 wks faster

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
HHS OCRNov 19 · first
Montana State AG+11d · this page

Pattern: first filing Nov 19 (NY), last Nov 30 (MT) — a 11-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.