PhysicalTheftData ExfiltratedPHIHEALTH_BASICLowActive
Kaiser Permanente Health Plan, Inc of Northern California
bd_3e771fb9aec5b207 · schema v1 · pii pii-v1
Full breach record for Kaiser Permanente Health Plan, Inc of Northern California →Kaiser Permanente Northern California reported the theft of ultrasound machines containing Protected Health Information (PHI) and Member Reference Numbers (MRN). Two employees stole equipment from multiple sites between 2010 and 2016. The incident was reported to law enforcement. No financial information or SSNs were involved.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-62796
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 12, 2016
- Raw hash
- 49cdca4131a8f41dac6325ab0d85c885fff4a0245e22f307f49123cfe7bfaef2
Reporting entity
- Name
- Kaiser Permanente Health Plan, Inc of Northern Californianorm: kaiser permanente health plan inc of northern california
- Domain
- kp.org
Victim entity
- Name
- Kaiser Permanente Health Plan, Inc of Northern Californianorm: kaiser permanente health plan inc of northern california
- Domain
- kp.org
Incident
- Discovered
- Jun 10, 2016
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- InternalFinancial
Compliance
- Time to disclose
- 5 weeks(32 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.