Cerner Corporation
bd_eb522228bcaccfaa · schema v1 · pii pii-v1
Full breach record for Cerner Corporation →4 incidents on fileCerner Corporation reported an unauthorized third-party access to legacy EHR systems starting Jan 22, 2025, discovered March 7, 2025. Data included names, SSNs, and PHI. Federal law enforcement delayed notification. Cerner engaged forensic specialists and offered 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 22, 2025
Begins
Mar 7, 2025
Discovered
Jul 25, 2025
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- California State AGbd_28ee1e6c3dffc4902025-07-25Candidate
- Nebraska State AGbd_3a23d77e3f28adfc2025-07-25Verified
- Oregon State AGbd_84ee1229a46c91d32025-07-25Verified
- Massachusetts State AGbd_9d89cbf05f39075c2025-07-25Verified
Show 3 more filings ↓Show fewer ↑up to 7d gap
- Washington State AGbd_d595530ba42639ae2025-07-25Verified
- Texas State AGbd_80ec506162e7d5792025-07-28 · +3dVerified
- Illinois State AGbd_f238b85559dc3dac2025-08-01 · +7dVerified
Filing propagation · 8 filings · 8 states
View merged incident ↗Pattern: first filing Jul 25 (CA), last Aug 1 (IL) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.