DisclosureLens
HackingHealthcareHealthcareSupply Chain (3P Vendor)Customer Data InvolvedDelayed DiscoveryPHIHealth (basic)Identity (basic)LowContained

Sutter North Surgery Center

bd_d8ebf2f35ab81bb7 · schema v1 · pii pii-v1

Severity

Low

Discovered

Feb 9, 2022

Filed

Sep 8, 2023

To disclose

19 months

Affected

Not disclosed

Linked

2 filings

Confidence

65%
Full breach record for Sutter North Surgery Center

Sutter North Surgery Center notified California residents that their protected health information may have been accessed by an unauthorized actor via its vendor, Sightpath Medical, LLC. Sightpath discovered unusual activity on February 9, 2022, and determined PHI was involved on June 14, 2023. The incident is contained. Complimentary identity protection services are offered.

Incident timeline

discovery → filing · 19 months / 576 days

Feb 9, 2022

Begins

Feb 9, 2022

Discovered

Sep 8, 2023

Filed

vs. sector median

+71 wks slower

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings

View merged incident ↗
HHS OCRSep 8 · first
California State AGSep 8 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.