DisclosureLens
HackingHealthcareHealthcareStolen CredentialsEmail MisuseCustomer Data InvolvedEmployee Data InvolvedTargetedIdentity (basic)Government IDFinancial accountFinancial credentialsMediumContained

Piedmont Cancer Institute, P.C.

bd_a31db05fc9deb262 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Mar 25, 2024

Filed

Aug 19, 2024

To disclose

21 weeks

Affected · nationwide

3051 in this filing

Confidence

66%
Full breach record for Piedmont Cancer Institute, P.C.3 incidents on file

Piedmont Cancer Institute reported an external system breach (hacking) affecting 305 individuals, including 1 Maine resident. The incident involved unauthorized access to an employee email account on or around February 27, 2024, discovered on March 25, 2024. Compromised data included names, SSNs, driver's license numbers, passport numbers, financial account numbers, and payment card access information. Notifications were sent on August 19, 2024, offering 12 months of credit monitoring.

Maine clockDiscovered Mar 25, 2024Filed with AG Aug 19, 2024147d ME AG >90d21 weeks discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

undetected · 27 days
discovery → filing · 21 weeks / 147 days

Feb 27, 2024

Begins

Mar 25, 2024

Discovered

Aug 19, 2024

Filed

vs. sector median

+8 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed305 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.