MalwareOtherRansomwareRansom DemandedData EncryptedDelayed DiscoveryMedium
American Associated Pharmacies
bd_fe8758ed5a20a130 · schema v1 · pii pii-v1
Full breach record for American Associated Pharmacies →American Associated Pharmacies, a health sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2024-10-23 and filed notice on 2025-11-12. 1,438 Washington residents were affected. 385 days elapsed between awareness and notification. 10 days to identify the breach. 24 days to contain the breach.
Washington clock✗ WA AG >90d13 months discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 6 about the same incident.View merged incident
A leak claim by embargo about this victim predates this filing by 364 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_026dc026d7edd520Leak Siteembargofiled 2024-11-12(364d gap)Verified
Regulatory filings (4) · sorted by filing gap
- bd_5752d2fa56e1021fCalifornia State AGfiled 2025-11-12Verified
- bd_6f03581859047e74Maine State AGfiled 2025-11-12Candidate
- bd_740593241b9440ecVermont State AGfiled 2025-11-12Verified
- bd_a055985a15fb12b5Montana State AGfiled 2025-11-12Verified
Source provenance
- Source URL
- https://data.wa.gov/resource/sb4j-ca4h.json?id=20714
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 12, 2025
- Raw hash
- ebb8a4fba4b78290fb36a70ae7e8ec8580a8daf6dbe6ddaa91ba833ff22eb902
Reporting entity
- Name
- American Associated Pharmaciesnorm: american associated pharmacies
Victim entity
- Name
- American Associated Pharmaciesnorm: american associated pharmacies
- Industry
- Otherllm
Incident
- Discovered
- Oct 23, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,438
- Data types
- —
- Attack vector
- Ransomware
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 13 months(385 days from discovery to filing)
- Compliance flags
- WA AG >90dLeak >180d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.