Catholic Diocese of Cleveland
bd_8e8c782f32766d3c · schema v1 · pii pii-v1
Full breach record for Catholic Diocese of Cleveland →2 incidents on fileThe Catholic Diocese of Cleveland experienced a phishing incident resulting in unauthorized access to an employee's business email account between December 14, 2023, and January 12, 2024. The Diocese detected the incident on January 12, 2024, and notified affected individuals starting April 5, 2024. Personal information, including names and other data elements, was accessed. The Diocese engaged third-party forensic investigators and is offering 12 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 14, 2023
Begins
Jan 12, 2024
Discovered
Apr 22, 2024
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- Maine State AGbd_e8e6f12187ab27d32024-04-22Verified
- New Hampshire State AGbd_0cc8c4367841e0a32024-04-26 · +4dVerified
- Indiana State AGbd_0d35c1a84a132ff72024-04-29 · +7dVerified
- Vermont State AGbd_21ddc3aa2c09650b2024-04-29 · +7dVerified
Show 3 more filings ↓Show fewer ↑up to 79d gap
- Massachusetts State AGbd_87433c3970a9adc02024-05-02 · +10dVerified
- Maine State AGbd_8a8733f78e2c49902024-07-10 · +79dVerified
- Vermont State AGbd_c60d1208e68d01462024-07-10 · +79dVerified
Filing propagation · 8 filings · 6 states
View merged incident ↗Pattern: first filing Apr 22 (ME), last Jul 10 (VT) — a 79-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.