DisclosureLens
HackingHealthcareHealthcareStolen CredentialsCustomer Data InvolvedIdentity (basic)PHIHealth (basic)LowContained

Eastern Los Angeles Regional Center

bd_efba6d612fd6f432 · schema v1 · pii pii-v1

Severity

Low

Discovered

Jul 15, 2021

Filed

Jan 7, 2022

To disclose

25 weeks

Affected

Not disclosed

Linked

2 filings

Confidence

64%
Full breach record for Eastern Los Angeles Regional Center2 incidents on file

Eastern Los Angeles Regional Center (ELARC) experienced unauthorized access to one employee email account on July 15, 2021. The incident involved consumer information including names and potentially health-related data. ELARC secured the system, engaged cybersecurity specialists, and offered 12 months of identity monitoring via Kroll. No evidence of misuse was found.

California clockDiscovered Jul 15, 2021Notified Oct 6, 202183d CA 60-day late25 weeks discovery → filing

Incident timeline

discovery → filing · 25 weeks / 176 days

Jul 15, 2021

Begins

Jul 15, 2021

Discovered

Jan 7, 2022

Filed

vs. sector median

+13 wks slower

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
California State AGJan 7 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.