DisclosureLens
HackingHealthcareTechnologyHealthcareVulnerability ExploitData ExfiltratedSupply Chain (3P Vendor)TargetedIdentity (basic)PIILowContained

Lincare Holdings Inc.

bd_a6f077781742d09d · schema v1 · pii pii-v1

Severity

Low

Discovered

Dec 21, 2023

Filed

Apr 29, 2024

To disclose

19 weeks

Affected

3state residents only

Confidence

66%
Full breach record for Lincare Holdings Inc.11 incidents on file

Lincare Holding Inc. notified Montana residents of a data breach involving MOVEit Transfer software exploited by an unauthorized party. The incident, discovered Dec 21, 2023, involved data extracted on May 31, 2023, including names, addresses, DOBs, and insurance info. Philips Respironics, the vendor, suspended the tool and offered credit monitoring.

Leak gap clock Leak >180d19 weeks discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

undetected · 204 days
discovery → filing · 19 weeks / 130 days

May 31, 2023

Begins

Dec 21, 2023

Discovered

Apr 29, 2024

Filed

vs. sector median

+6 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3 affectedView incident
A leak claim by lockbit_3 about this victim predates this filing by 547 days.View originating leak claim

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.