OCUCO LIMITED
ent_019eed4315f11c77377d5231cd8f0c94
Disclosures
9
State AG · HHS OCR · Leak Site · 9 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
240,961
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- OCUCO LIMITED
- Normalized
- ocuco— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 98450088BC84F0EF4A84
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- ocuco.com
Disclosure history (9)newest first
- Oregon State AGas victim2025-07-28
Ocuco reported a data breach to the Oregon Attorney General. The breach was reported on 2025-07-28. The breach occurred during 1/1/0001. The breach was discovered on 1/1/0001. 9,839 individuals were affected. Notice was sent on 1/1/0001.
- Texas State AGas victim2025-07-15
Ocuco based in Clearwater, Florida, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-04-01 and reported on 2025-07-15. 39,657 Texas residents were affected. 240,961 individuals affected in total. Types of information involved: Name of individual;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- Montana State AGas victim2025-07-11
Ocuco Ltd., an eye care technology company, notified Montana residents of a data breach involving protected health information and personal data (names). Unauthorized actors accessed non-production servers between March 28 and April 1, 2025, exploiting a vulnerability in third-party software. Ocuco engaged forensic experts, patched the vulnerability, and offered 24 months of credit monitoring.
- Washington State AGas victim2025-07-11
Ocuco, an eye care technology company, disclosed a cybersecurity incident where an unauthorized actor accessed non-production servers between March 28 and April 1, 2025, exploiting a newly discovered vulnerability in third-party software. The incident exposed PHI and PII of 24,833 Washington residents. Ocuco notified the Washington AG on July 11, 2025, and offered 24 months of credit monitoring.
- California State AGas victim2025-07-11
Ocuco Ltd., an eye care technology company, experienced a data breach involving protected health information (PHI) and personal information. An unauthorized actor accessed non-production servers between March 28 and April 1, 2025, exploiting a vulnerability in third-party software. Files were copied from one server. Ocuco discovered the incident on April 1, 2025, after a dark web posting. The company patched the vulnerability, engaged forensic experts, and is offering 24 months of credit monitoring to affected individuals.
- Nebraska State AGas victim2025-06-20
Ocuco, a Clearwater, FL-based organization, notified Nebraska residents of a data breach involving unauthorized access to personal information. The incident involved the compromise of customer credentials, leading to the exposure of names, addresses, and Social Security numbers. Ocuco is offering 24 months of complimentary credit monitoring and fraud assistance via TransUnion/Cyberscout. No evidence suggests data was targeted for fraud, but the breach is contained.
- Massachusetts State AGas victim2025-06-20
Ocuco reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-06-20. 234 Massachusetts residents were affected.
- FLORIDAHHS OCRas victim2025-05-30
Ocuco Inc reported to HHS on 2025-05-30 a Hacking/IT Incident affecting 240,961 individuals. Breached information located on Network Server. PHI included names, DOB, addresses, driver's license numbers, SSNs, claims, financial info, diagnoses, lab results, and medications.
- GLOBALLeak Siteas victim2025-04-01