DisclosureLens
GLOBALUnknownRansomwareLorenzLow

Cogdell Memorial Hospital

bd_6e42fa4322d633dd · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Oct 10, 2023

To disclose

Affected

Not disclosed

Linked

3 filings

Confidence

60%
Full breach record for Cogdell Memorial Hospital

Press / market disclosure — not a breach-notification filing

A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage — verify against the source.

Cogdell Memorial Hospital Cyberattack Affects 87,000 Patients. Cogdell Memorial Hospital: The article reports a cyberattack at Cogdell Memorial Hospital in Texas, where the personal and medical data of 87,000 patients were potentially compromised. The hospital has secured its network and is conducting an investigation with a cybersecurity firm, but has not offered credit monitoring or identity theft protection services to victims. The attack was claimed by Lorenz. Linked ransomware group: lorenz.

Incident timeline — mostly unverified

? — ?

Breach window unknown

Oct 10, 2023

Press report

Corroborated · see linked filings

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Attack → press

Compliance clock

Not assessable

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings

View merged incident ↗
PressOct 10 · first · this page
Press+22d

Pattern: first filing Oct 10, last Nov 1 — a 22-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market reportThis record

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.

Source ceiling

  • incident type + narrative only (may be machine-translated)
  • discovery date
  • materiality
  • affected count
  • data types
  • compliance clock

The ✕ fields stay blank until a regulatory filing or victim disclosure lands.

About this groupFirst seen 2020-01-12

lorenz

According to ransomware.live, Tesorion describes Lorenz as a ransomware with design and implementation flaws, leading to impossible decryption with tools provided by the attackers. A free decryptor for 2021 versions was made available via the NoMoreRansom initiative. A new version of the malware was discovered in March 2022, for which again was provided a free decryptor, while the ransomware operators are not able to provide tools to decrypt affected files.

78 victims claimed globally76 tracked hereFull profile →