Clustered 8 filings across 5 jurisdictions · filing window Mar 7, 2023 → Apr 17, 2023. View entity profile → Other incidents for this victim →
incident inc_7fd6fdd798ee4157 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Identity (basic) · Government ID · Health (basic)
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA ME MT OR WA
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
8 filings across 5 jurisdictions · Mar 7, 2023 – Apr 17, 2023 · 3 milestones
Jan 28, 2023 → Jan 30, 2023
When the intrusion reportedly occurred, per the linked filings
Jan 30, 2023
Reported by CALIFORNIA AG, OREGON AG filings
Feb 2, 2023
Reported by WASHINGTON AG, OREGON AG, MAINE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
CHSPSC, LLC disclosed a third-party security incident involving vendor Fortra, LLC. An unauthorized party exploited a previously unknown vulnerability in Fortra's GoAnywhere file transfer platform between January 28-30, 2023. The incident resulted in the unauthorized disclosure of personal information for CHSPSC affiliates, including patients and employees. Affected data included names, addresses, medical billing/insurance info, diagnoses, medications, dates of birth, and Social Security numbers. Fortra contained the incident on January 31, 2023. CHSPSC notified law enforcement (FBI, CISA) and is offering 24 months of credit monitoring.
CHSPSC, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2023-03-07. The breach occurred during 1/28/2023 - 1/30/2023. The breach was discovered on 2/2/2023.
CHSPSC, LLC, a health sector entity reported a other incident to the Washington Attorney General. The organization became aware of the incident on 2023-02-02 and filed notice on 2023-03-07. 559 Washington residents were affected. 33 days elapsed between awareness and notification. 5 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 559
CHSPSC, LLC reported a data breach to the Montana Attorney General. The breach was reported on 2023-03-08. The breach occurred from 1/28/2023 to 1/30/2023. 99 Montana residents were affected.
Affected (this filing): 99
Healthcare entity CHSPSC, LLC reported a data breach that occurred on January 28, 2023, and was discovered on February 2, 2023. The company notified affected individuals on March 20, 2023. The total number of affected individuals and the specific types of information compromised were not disclosed in the summary notice, which referenced a separate correspondence for details. CHSPSC offered 24 months of identity restoration and credit monitoring services through Experian to those impacted.
CHSPSC, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2023-04-17. The breach occurred during 1/28/2023 - 1/30/2023. The breach was discovered on 1/30/2023. 1,173,555 individuals were affected. Notice was sent on 3/27/2023.
Affected (this filing): 1,173,555
CHSPSC, LLC notified California residents of a security incident involving its vendor, Fortra, LLC. An unauthorized party exploited a previously unknown vulnerability in Fortra's GoAnywhere file transfer platform between January 28 and January 30, 2023. The breach exposed personal information of patients, including names, addresses, Social Security numbers, and medical diagnoses. Fortra took systems offline on January 31, 2023. CHSPSC is offering 24 months of credit monitoring.
CHSPSC, LLC, a healthcare organization, reported a security breach discovered on February 2, 2023. The incident occurred on January 28, 2023. Following the breach, the company offered affected individuals 24 months of identity restoration and credit monitoring services through Experian IdentityWorks. The total number of affected individuals and the specific types of data compromised were detailed in a separate notice not included in this document.