Skip to content

Richard J. Caron Foundation

Disclosed Aug 17, 20206 years ago22,718 affectedConfirmed

Official notice

The covered entity (CE), Richard J. Caron Foundation, reported that its business associate (BA) experienced a ransomware attack affecting the electronic protected health information (ePHI) of 22,817 individuals. The ePHI involved included names, addresses, dates of birth, email addresses, and donor information. The CE notified HHS, affected individuals, the media, and provided substitute notice.

What is known

People affected22,718 (as reported to HHS)
DisclosedAug 17, 2020
DiscoveredJul 16, 2020
HappenedFeb 7, 2020
AttackHacking
Data exposedNames, Health
SectorNonprofit · US
StatusConfirmed

Sources

Source
Oregon DOJ breach notice: Richard J. Caron Foundationjustice.oregon.gov · Official notice
HHS OCR breach report (archive, resolved): Richard J. Caron Foundation (Healthcare Provider, PA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalAug 17, 202022,718
Oregon DOJresidents of ORAug 20, 202022,296
History of this record
  • 2026-09-25 · attack: unknown to hacking · backfill source
  • 2026-09-25 · data_types: [] to ["names","health"] · backfill source
  • 2026-09-25 · records_basis: empty to hhs · backfill source
  • 2026-09-25 · records: empty to 22718 · backfill source
  • 2026-09-25 · disclosed: 2020-08-20 to 2020-08-17 · backfill source
  • 2026-09-25 · summary: empty to The covered entity (CE), Richard J. Caron Foundation, reported that its business associate (BA) experienced a ransomware attack affecting the electronic protected health information (ePHI) of 22,817 individuals. The ePHI involved included n · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Oregon DOJ), confirmed by Oregon DOJ. Record counts are as reported. Not legal advice.

Everything about Richard J. Caron Foundation

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.