Clustered 5 filings across 5 jurisdictions · filed Aug 17, 2023. View entity profile → Other incidents for this victim →
incident inc_8c7082aa72254651 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA IL ME MT VT
HHS OCR · State AG
Earliest sighting first · deep chronology in Litigation Timeline
Apr 4, 2023
When the intrusion reportedly occurred, per the linked filings
Apr 4, 2023
Reported by CALIFORNIA AG, VERMONT AG filings
Jun 20, 2023
Reported by MAINE AG filing
Morris Hospital & Healthcare Centers reported to HHS on 2023-08-17 a Hacking/IT Incident affecting 256,568 individuals. Breached information located on Network Server. The cyber-attack compromised PHI including names, addresses, DOB, SSNs, and diagnoses. The CE implemented additional administrative and technical safeguards.
Affected (this filing): 256,568
Morris Hospital & Healthcare Centers, a healthcare provider based in Morris, Illinois, reported an external system breach (hacking) occurring on April 4, 2023, discovered on June 20, 2023. The incident compromised the personal information of 248,943 individuals, including names and Social Security Numbers. The organization notified affected individuals in writing on August 17, 2023, and provided 12 months of credit monitoring and identity restoration services through Experian. The Maine Attorney General's office received the breach notification, covering 25 affected Maine residents.
Affected (this filing): 248,943
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Morris Hospital & Healthcare Centers discovered a security incident on April 4, 2023, involving unauthorized exports of data to an external cloud storage platform. The breach affected current and former employees, their dependents, and patients. Exposed data included names, addresses, SSNs, dates of birth, medical record numbers, and diagnostic codes. Morris Hospital contained the incident, reset credentials, removed malicious files, and offered identity monitoring services.
Morris Hospital & Healthcare Centers disclosed a cybersecurity incident discovered on April 4, 2023. An unauthorized party exported data to an external cloud storage platform. Affected data included names, addresses, SSNs, medical record numbers, account numbers, and dates of birth for current/former employees, dependents, and patients. The hospital reset passwords, suspended email access, and retained forensic investigators. No specific count of affected individuals was provided in the filing.
Morris Hospital & Healthcare Centers reported a data breach to the Montana Attorney General. The breach was reported on 2023-08-17. The breach occurred on 4/4/2023. 61 Montana residents were affected.
Affected (this filing): 61