DisclosureLens
PhysicalHealthcareGovernmentHealthcareTheftSupply Chain (3P Vendor)Customer Data InvolvedPHIGovernment IDIdentity (basic)Health (basic)Financial accountMediumContained

California Department of Public Health

bd_667964cf278de6b3 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

May 23, 2018

To disclose

Affected

Not disclosed

Confidence

66%
Full breach record for California Department of Public Health4 incidents on file

On March 12, 2018, a vehicle belonging to a California Department of Public Health (CDPH) contractor was broken into, resulting in the theft of documents and a laptop containing personal and health information of individuals surveyed or inspected by the department. Stolen data included names, dates of birth, Social Security numbers, addresses, diagnoses, health insurance information, and demographic data. The CDPH notified law enforcement, reviewed procedures, and provided additional workforce training. Affected individuals were advised to monitor credit reports and place fraud alerts.

Incident timeline

Mar 12, 2018

Begins

May 23, 2018

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.