Supply chain ⛓ Supply Chain

Catholic Medical Center (CMC) Third-Party Breach (April 2024)

📅 2024-04-01 🏢 Lamont Hanley & Associates
Primary Source ↗

Incident Details

Phishers Gain Access to 23 L.A. County Department of Health Services Email Accounts. Los Angeles County Department of Health Services’ employees were targeted in a recent phishing campaign, and almost 2,800 Catholic Medical Center patients Los Angeles County Department of Health Services has confirmed that 23 employee email accounts were compromised in a phishing attack, and 2,800 Catholic Medical Center patients have been affected by a data breach at one of its vendors. Los Angeles County Department of Health Services’ employees were targeted in a recent phishing campaign, and almost 2,800 Catholic Medical Center patients have been affected by a data breach at one of its vendors. Third-party company: Lamont Hanley & Associates.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Lamont Hanley & Associates
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2024-04-01 Breach occurred
  2. 2024-04-26 Publicly disclosed