DisclosureLens
HackingOtherDelayed DiscoveryCustomer Data InvolvedPIIIdentity (basic)Government IDHigh

The Roman Catholic Diocese of Syracuse

bd_5ff3c45b5fe2aaaa · schema v1 · pii pii-v1

Severity

High

Discovered

May 24, 2022

Filed

Jun 6, 2022

To disclose

13 days

Affected · nationwide

4,7441 in this filing

Linked

4 filings

Confidence

65%
Full breach record for The Roman Catholic Diocese of Syracuse

The Roman Catholic Diocese of Syracuse reported an internal system breach that occurred between May 24, 2021, and June 2, 2021. The breach was discovered a year later on May 24, 2022. The incident affected 4,744 individuals, exposing names and Social Security Numbers. The Diocese offered 12 months of identity theft protection services to those affected.

Maine clockDiscovered May 24, 2022Filed with AG Jun 6, 202213d ME AG ≤30d13 days discovery → filing
AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.

Incident timeline

undetected · 365 days
discovery → filing · 13 days

May 24, 2021

Begins

May 24, 2022

Discovered

Jun 6, 2022

Filed

vs. sector median

6 wks faster

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Indiana State AGJun 6 · first
Maine State AGJun 6 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.