MisusePrivilege AbuseEmployee Data InvolvedPHIHEALTH_BASICIDENTITY_BASICLowResolved
Kaiser Foundation Hospitals
bd_0a465d2264e497d5 · schema v1 · pii pii-v1
Full breach record for Kaiser Foundation Hospitals →Kaiser Foundation Hospitals, Northern California reported an insider incident where an employee inappropriately accessed members' medical records and demographic information. The employee was terminated and policies are being reviewed. No SSN or financial data was involved.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e97126e0fa403278HHS OCRfiled 2021-02-23Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-538242
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 23, 2021
- Raw hash
- 55fbf8a4e26c1409896b4fa7da0914175e3759e08b94b0cd7d8a934c383a40c0
Reporting entity
- Name
- Kaiser Foundation Hospitalsnorm: kaiser foundation hospitals
- Domain
- healthy.kaiserpermanente.org
Victim entity
- Name
- Kaiser Foundation Hospitalsnorm: kaiser foundation hospitals
- Domain
- healthy.kaiserpermanente.org
Incident
- Discovered
- Dec 28, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Insider
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- Internal
- Initial access
- insider_action
Compliance
- Time to disclose
- 8 weeks(57 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.