OraSure Technologies, Inc.
ent_019dd17af3b02d85f5f1d464a44e461c
Disclosures
5
State AG · SEC 8-K · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
1,701
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- OraSure Technologies, Inc.
- Normalized
- orasure technologies— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0001116463
- Domain
- orasure.com
Disclosure history (5)newest first
- ⛰️New Hampshire State AGas victim2024-08-07
OraSure Technologies, Inc. notified the NH AG of a security breach where unauthorized access occurred between March 25-27, 2024. The incident affected current and former employees, including 4 New Hampshire residents. Data types included PII and government IDs. OraSure notified law enforcement, enhanced security, and offered credit monitoring.
- 🦬Montana State AGas victim2024-08-07
OraSure Technologies, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2024-08-07. The breach occurred from 3/25/2024 to 3/27/2024.
- 🏎️Indiana State AGas victim2024-07-09
OraSure Technologies Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-03-25 and was reported on 2024-07-09. 4 Indiana residents were affected. 1,701 individuals affected in total.
- 🍁Vermont State AGas victim2024-07-09
OraSure Technologies, Inc. notified consumers of a data breach involving unauthorized access to personal information. The notice, filed with the Vermont Attorney General on July 9, 2024, references impacted residents in multiple states including Vermont, Maryland, New York, and Rhode Island. Affected data includes identity information such as names and government IDs. The company engaged TransUnion for consumer support and stated there is no evidence of misuse.
- FEDERALSEC 8-Kas victim2024-04-12
On or about March 27, 2024, OraSure Technologies became aware of a cybersecurity incident in which an unauthorized third party gained access to Company data and exfiltrated certain files. The Company initiated response protocols, engaged cybersecurity experts and external counsel, notified law enforcement, and believes it has contained the incident. Investigation continues to determine whether personal or sensitive information was affected; no material financial impact reported.