Arbor Associates Inc
bd_5c23d20e0ad3430d · schema v1 · pii pii-v1
Full breach record for Arbor Associates Inc →Arbor Associates, Inc. notified consumers of a data security incident where files were acquired without authorization between April 15-17, 2025. The breach potentially exposed patient survey data including names, dates of birth, medical record numbers, and diagnosis codes. Arbor engaged cybersecurity experts and enhanced security measures.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 15, 2025
Begins
Apr 17, 2025
Discovered
Jul 17, 2025
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- Oregon State AGbd_7e87e5d560735bef2025-07-17Verified
- Massachusetts State AGbd_15a5c87af98e6ebd2025-07-03 · +14dVerified
- HHS OCRbd_19e14edfcd577e892025-07-03 · +14dVerified
- Washington State AGbd_4477dbc38992c4432025-07-03 · +14dVerified
Show 6 more filings ↓Show fewer ↑up to 26d gap
- Montana State AGbd_a984f051dd655e2f2025-07-03 · +14dVerified
- California State AGbd_d13f3fd45725847a2025-07-03 · +14dVerified
- Illinois State AGbd_2139cdce40ed95232025-07-01 · +16dCandidate
- Montana State AGbd_90472ab9e6074d4a2025-08-08 · +22dVerified
- California State AGbd_b50fb3d4dec6d3c42025-08-08 · +22dVerified
- Texas State AGbd_a75ba824f7da509a2025-08-12 · +26dVerified
Filing propagation · 11 filings · 9 states
View merged incident ↗Pattern: first filing Jul 1 (IL), last Aug 12 (TX) — a 42-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.