Cencora data breach exposes US patient info from 8 drug companies
ID: 43398973-c7a1-5622-be96-ce7c7536276b
STIX ID: report--43398973-c7a1-5622-be96-ce7c7536276b
Feed Name: Bleeping Computer
In February 2024 Cencora (formerly AmerisourceBergen) suffered a data breach that led to confirmed exfiltration of personal and health information used in patient support programs; at least eleven major pharmaceutical firms (including Novartis, Bayer, AbbVie, Genentech, and others) filed nearly identical breach notices attributing impacted data—full name, address, health diagnoses, medications, and prescriptions—to the Cencora incident. Cencora's investigation concluded April 10, 2024, and the company is offering two years of Experian identity protection and credit monitoring while noting no current evidence the data was publicly posted or used fraudulently; the number of affected individuals and details about the attacker remain undisclosed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
