On February 21, 2024, Cencora, Inc. discovered that data from its information systems had been exfiltrated. The incident involved Lash Group, a Cencora affiliate that had held personal information through a prior partnership with CareDx, Inc. Affected data may include names, addresses, dates of birth, Social Security Numbers, and diagnostic test indicators. Cencora notified CareDx on May 22, 2024. Affected individuals were offered 24 months of Experian IdentityWorks credit monitoring.