DisclosureLens
KANSASMalwareHealthcareGovernmentHealthcareRansomwareBusiness Associate (HIPAA)Customer Data InvolvedData EncryptedRansom DemandedHealth (basic)Identity (basic)Government IDHighResolved

East Central Kansas Area Agency on Aging

bd_dda36e356e19059d · schema v1 · pii pii-v1

Severity

High

Discovered

Sep 5, 2017

Filed

Oct 31, 2017

To disclose

8 weeks

Affected

8,750

Confidence

97%
Full breach record for East Central Kansas Area Agency on Aging

On September 5, 2017, ransomware encrypted files in East Central Kansas Area Agency on Aging's Microsoft Azure environment. The breach affected PHI of 8,000 individuals (HHS-reported count: 8,750), including names, dates of birth, addresses, Social Security numbers, and Medicaid numbers stored on a network server. The CE notified HHS, affected individuals, and the media. Remediation included engaging a cybersecurity firm, deploying cloud security software, resetting passwords, updating remote access procedures, and employee training. OCR obtained documented assurances of corrective actions.

HIPAA clock HHS report on time8 weeks discovery → filing
occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.

Incident timeline

discovery → filing · 8 weeks / 56 days

Sep 5, 2017

Begins

Sep 5, 2017

Discovered

Oct 31, 2017

Filed

vs. sector median

5 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed8,750 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.