AccidentalMisdeliveryData ExfiltratedCustomer Data InvolvedIDENTITY_BASICHEALTH_BASICLowResolved
ST. JOSEPH HEALTH SYSTEM
bd_24101abfc7bc8913 · schema v1 · pii pii-v1
Full breach record for ST. JOSEPH HEALTH SYSTEM →St. Joseph Health (California) disclosed an error-based breach on February 18, 2014, where an employee inadvertently emailed an unencrypted Excel file containing patient names and health service details to an external investment firm (Cain Brothers). The breach was contained the same day upon recipient deletion. No SSNs or financial data were exposed. St. Joseph Health retrained staff and engaged Kroll for risk mitigation.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-44318
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 3, 2014
- Raw hash
- bd5cccbf794a14946677dc535a81e46f5c05c4b61e888d978d3f645c19413c3e
Reporting entity
- Name
- ST. JOSEPH HEALTH SYSTEMnorm: st joseph health system
- Domain
- stjosephhealth.org
Victim entity
- Name
- ST. JOSEPH HEALTH SYSTEMnorm: st joseph health system
- Domain
- stjosephhealth.org
Incident
- Discovered
- Feb 18, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1535 Untrusted Peripheral Device
- Threat actor
- Internal
Compliance
- Time to disclose
- 12 days(12 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.