On June 1, 2020, University of California San Francisco (UCSF) detected a ransomware attack on a limited part of its School of Medicine IT environment. The attacker obtained certain files and encrypted others. UCSF contained the incident, paid the ransom to decrypt data, and notified law enforcement. Affected data may include names, SSNs, health information, and financial data. UCSF offered 12 months of credit monitoring.