On February 21, 2024, Cencora, Inc. learned that data from its information systems had been exfiltrated. The data included personal information held by Cencora's Lash Group affiliate through its partnership with Sumitomo Pharma America, Inc. in connection with patient support programs. Affected data included names, addresses, dates of birth, health diagnoses, and medications/prescriptions. Cencora engaged cybersecurity experts and law enforcement and confirmed the impact on April 10, 2024.