Clustered 7 filings across 7 jurisdictions · filing window Jan 3, 2022 → Jan 5, 2022. View entity profile → Other incidents for this victim →
incident inc_315f43e80b3840c1 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
CA ME MT NH OR SC WA
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Sep 27, 2021
When the intrusion reportedly occurred, per the linked filings
Sep 27, 2021
Reported by NEW HAMPSHIRE AG, CALIFORNIA AG, WASHINGTON AG, SOUTH CAROLINA AG, OREGON AG, MAINE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Ravkoo, a health sector entity reported a other incident to the Washington Attorney General. The organization became aware of the incident on 2021-09-27 and filed notice on 2022-01-03. 5,729 Washington residents were affected. 98 days elapsed between awareness and notification. 0 days to contain the breach.
Affected (this filing): 5,729
Ravkoo, a digital SaaS platform for prescription fulfillment, detected a cybersecurity attack on its AWS-hosted portal on September 27, 2021. An unauthorized third party attempted to infiltrate the portal. A forensic investigation revealed that certain prescription and health information, including full name, mail address, phone number, and limited medical information, could have been compromised. Social Security Numbers were not accessed. Ravkoo offered one year of complimentary identity monitoring via Kroll.
Ravkoo, a digital SaaS platform for prescription fulfillment, notified the New Hampshire Attorney General of a cybersecurity incident on its AWS-hosted cloud prescription portal. The incident, occurring on September 27, 2021, involved an unauthorized third party attempting to infiltrate the system. The breach potentially exposed limited prescription and health information, as well as personal data (name, address, phone) for 600 New Hampshire residents. No Social Security Numbers were compromised. Ravkoo engaged forensic specialists, enhanced security policies, and provided one year of free identity monitoring to affected individuals.
Affected (this filing): 600
Ravkoo reported a data breach to the Montana Attorney General. The breach was reported on 2022-01-03. The breach occurred on 9/27/2021. 611 Montana residents were affected.
Affected (this filing): 611
Ravkoo, a digital SaaS platform for prescription fulfillment, notified individuals of a data security incident on its AWS portal. An unauthorized third party attempted to infiltrate the portal on September 27, 2021. The incident may have exposed full names, mail addresses, phone numbers, and prescription/limited medical information. No SSN was accessed. Ravkoo provided one year of identity monitoring via Kroll.
Ravkoo reported a data breach to the Oregon Attorney General. The breach was reported on 2022-01-05. The breach occurred during 9/27/2021 - 12/7/2021. The breach was discovered on 9/27/2021. 105,000 individuals were affected. Notice was sent on 1/3/2022.
Affected (this filing): 105,000
Ravkoo, a healthcare entity based in Auburndale, Florida, reported an internal system breach occurring between September 27, 2021, and December 7, 2021. The incident affected 105,000 individuals, including 368 Maine residents. Notification was sent on January 3, 2022, offering 12 months of credit monitoring and identity theft protection via Kroll. The breach was described as an 'internal system breach' involving unauthorized access.
Affected (this filing): 105,000