Kaiser Permanente
bd_32c7eed1cbbbeb93 · schema v1 · pii pii-v1
Kaiser Permanente discovered on September 3, 2024, that an unauthorized party accessed the email accounts of two workforce members. The incident occurred between August and September 2024. Affected data included protected health information (PHI) such as names, dates of birth, medical record numbers, and medical information. Social Security numbers and credit card numbers were not involved. Kaiser terminated access and reset passwords.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 1, 2024
Begins
Sep 3, 2024
Discovered
Nov 1, 2024
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_a1be27e2d67157222024-11-01Verified
Filing propagation · 2 filings
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.