Harrow Health, Inc. (filing entity and victim) discloses cybersecurity risks in its 10-K Item 1C. The filing describes a risk-based cybersecurity program, third-party risk assessments, and employee training. It states that while previous incidents have not materially affected the company, future cyberattacks could have a material adverse impact. No specific incident, date, or data breach is detailed.