The Lash Group, LLC
bd_dd5dd4bae0c6dfb9 · schema v1 · pii pii-v1
Cencora, Inc. reported a cybersecurity incident involving its affiliate The Lash Group, LLC. On February 21, 2024, data was exfiltrated from information systems, potentially containing personal information including names, addresses, dates of birth, health diagnoses, and medications. The incident was discovered on February 21, 2024, and notification was sent on May 30, 2024. 14,081 Washington residents were affected. Cencora engaged law enforcement and cybersecurity experts, and provided 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 21, 2024
Begins
Feb 21, 2024
Discovered
May 30, 2024
Filed
vs. sector median
+2 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Indiana State AGbd_7a59b37adf1e63ba2024-05-30Candidate
- Montana State AGbd_abeb3cbed3b7cf662024-05-30Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.