Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Good Samaritan Hospital Retirement Income Plan
bd_3cd1a1e64491ca3b · schema v1 · pii pii-v1
Full breach record for Good Samaritan Hospital Retirement Income Plan →Good Samaritan Hospital, Inc. reported a phishing incident in California on October 22, 2019. Between October 28 and November 8, 2019, employee email accounts were compromised via a targeted phishing campaign. The breach potentially exposed patient personal information (names, DOB, SSN, driver's license), protected health information, and financial account numbers. Good Sam engaged forensic investigators, reset credentials, and offered one year of credit monitoring.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_ef28f42e16621531Montana State AGfiled 2020-07-01(33d gap)Candidate
- bd_578004b36423aa6aHHS OCRfiled 2020-04-17(42d gap)Candidate
- bd_09310420901426e0California State AGfiled 2020-07-29(61d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-190475
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 29, 2020
- Raw hash
- 1c4c804038f97db4ca419dbd9eb26ec3620b5af53f5dbfdba46750b28619f459
Reporting entity
- Name
- Good Samaritan Hospital Retirement Income Plannorm: good samaritan hospital retirement income plan
Victim entity
- Name
- Good Samaritan Hospital Retirement Income Plannorm: good samaritan hospital retirement income plan
Incident
- Discovered
- Nov 4, 2019
- Materiality determined
- Oct 22, 2019
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 30 weeks(207 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.