HackingCustomer Data InvolvedData ExfiltratedIDENTITY_BASICHEALTH_BASICLowContained
OnePoint Patient Care
bd_8adcaa2abc34f2c0 · schema v1 · pii pii-v1
Full breach record for OnePoint Patient Care →OnePoint Patient Care detected suspicious network activity on August 8, 2024. An investigation revealed an unauthorized third party acquired information between August 6 and August 8, 2024. Affected data includes names, addresses, and prescription information. The company engaged forensic investigators, contained the incident, and notified law enforcement.
Leak gap clock✗ Leak >180d26 weeks discovery → filing
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (2)
- bd_3f7e05d630c49768Leak Siteinc_ransomfiled 2024-09-12(146d gap)Candidate
- bd_4fa10f6d814e255dLeak Siteinc_ransomfiled 2024-08-06(184d gap)Verified by operator
Regulatory filings (5) · sorted by filing gap
- bd_f55bcb1e60892a2aOregon State AGfiled 2025-02-06Verified
- bd_a04fe40ab837a151Oregon State AGfiled 2024-11-22(76d gap)Verified
- bd_b80758011a6c8438California State AGfiled 2024-11-22(76d gap)Verified by operator
- bd_576ce027515e4896Oregon State AGfiled 2024-10-23(106d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 106d gap
- bd_be89389a8bf3ebebMontana State AGfiled 2024-10-23(106d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-598340
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2025
- Raw hash
- 92c55db67b7f1acb70f9eb1bfb09e27dc06ba30380a03a557c8a8d7e2d0f9219
Reporting entity
- Name
- OnePoint Patient Carenorm: onepoint patient care
Victim entity
- Name
- OnePoint Patient Carenorm: onepoint patient care
Incident
- Discovered
- Aug 8, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 26 weeks(182 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.