Golden Gate Regional Center experienced a ransomware incident on September 23, 2020, where an unauthorized actor encrypted files and demanded ransom. The organization detected unusual activity on that date, disabled its network, and engaged forensic investigators. On January 13, 2021, it determined that client information, including names, unique identifiers, service descriptions, and cost information, may have been affected. Notices were sent on March 12, 2021, offering one year of identity monitoring.