DisclosureLens
HackingHealthcareHealthcareData ExfiltratedCustomer Data InvolvedIdentity (basic)Government IDHealth (basic)PHIMediumContained

Bayhealth Medical Center

bd_6d649b7cadf1148b · schema v1 · pii pii-v2

Severity

Medium

Discovered

Jul 31, 2024

Filed

Feb 3, 2025

To disclose

Affected

66state residents only

Linked

11 filings

Confidence

66%
Full breach record for Bayhealth Medical Center4 incidents on file

Bayhealth Medical Center notified Nebraska AG of a data event occurring between July 27-31, 2024, discovered July 31, 2024. Unauthorized access resulted in the acquisition of names, SSNs, driver's license numbers, and PHI. 66 Nebraska residents were notified starting October 4, 2024. Response included forensic investigation, law enforcement notification, and 12 months of credit monitoring.

Leak gap clock Leak >90d

Incident timeline

undetected · 4 days

Jul 27, 2024

Begins

Jul 31, 2024

Discovered

Feb 3, 2025

Filed

This filing is one of 11 about the same incident.View merged incident
A leak claim by rhysida about this victim predates this filing by 179 days.View originating leak claim

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (9) · sorted by filing gap

Show 5 more filingsup to 122d gap

Filing propagation · 10 filings · 9 states

View merged incident ↗

Pattern: first filing Oct 4 (DE), last Feb 3 (NE) — a 122-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.