MalwareRansomwareData EncryptedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHIMINORCriticalContained
Centrelake Medical Group, Inc.
bd_5a79055f0c129f24 · schema v1 · pii pii-v1
Full breach record for Centrelake Medical Group, Inc. →Centrelake Medical Group, Inc. disclosed a ransomware incident affecting 195,144 California residents. The attack occurred between January 9, 2019, and February 19, 2019, when an unknown third party infected servers with a virus that prohibited access to patient files. Compromised data included names, SSNs, driver's licenses, and PHI. Centrelake engaged forensic investigators, restored systems, and offered one year of identity monitoring via Kroll.
California clockDiscovered Feb 19, 2019 → Notified Apr 16, 201956d ✓ CA 60-day OK8 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_2f595599bea258d2Montana State AGfiled 2019-04-16Verified
- bd_4d4ab4bdac39256bHHS OCRfiled 2019-04-16Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-146402
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 16, 2019
- Raw hash
- 579c2858a5dc0c19ff5064c0119e0052e409e958882b751f5a158eff869ad5a1
Reporting entity
- Name
- Centrelake Medical Group, Inc.norm: centrelake medical
Victim entity
- Name
- Centrelake Medical Group, Inc.norm: centrelake medical
Incident
- Discovered
- Feb 19, 2019
- Materiality determined
- —
- Notification sent
- Apr 16, 2019
- Affected individuals
- 195,144
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHIMINOR
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Provided written notice to the Department of Health and Human ServicesProvided written notice to the Centers for Medicaid and Medicare ServicesProvided written notice to consumer reporting agenciesProvided written notice to other state regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 8 weeks(56 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 56d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 19, 2019→ Notified: Apr 16, 201956d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.