MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedEmployee Data InvolvedPHIHEALTH_BASICIDENTITY_BASICLowContained
GenRx Pharmacy
bd_f34fb831b294b659 · schema v1 · pii pii-v1
Full breach record for GenRx Pharmacy →GenRx Pharmacy experienced a ransomware attack on September 27-28, 2020. The attacker deployed ransomware but GenRx maintained access to backups. The attacker exfiltrated a small number of files containing patient health information (names, DOB, addresses, medication lists, health plan IDs) and prescription data. No SSN or financial data was affected. GenRx terminated access, engaged forensic experts, and implemented security upgrades including MFA and enhanced monitoring. Notifications were sent to affected individuals in California, Colorado, Illinois, and DC.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_3af2e661de9bb1d0HHS OCRfiled 2020-12-18Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-197301
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 18, 2020
- Raw hash
- c8eb2a2794c24f65eb37965570d5f4ccb753e5e606ba875563f111e463dd384d
Reporting entity
- Name
- GenRx Pharmacynorm: genrx pharmacy
Victim entity
- Name
- GenRx Pharmacynorm: genrx pharmacy
Incident
- Discovered
- Sep 28, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 12 weeks(81 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.