Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedPHIHEALTH_BASICIDENTITY_BASICLowContained
Covenant Care California, LLC
bd_444697bec78f4b28 · schema v1 · pii pii-v1
Full breach record for Covenant Care California, LLC →Covenant Care California, LLC notified the California Attorney General of a data breach involving Wagner Heights Nursing and Rehabilitation Center. On February 24, 2022, an employee's email account was compromised via a phishing email, allowing an unauthorized actor access for several hours. The incident potentially exposed patient records, including protected health information (PHI) and personally identifiable information (PII). The company secured the account, engaged forensic investigators, and is offering one year of identity monitoring to affected individuals.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_7661bb914420c3dbHHS OCRfiled 2022-05-06(3d gap)Verified
- bd_7b0ab00c082509beMontana State AGfiled 2022-05-06(3d gap)Verified
- bd_6dec4a99bf50f3f1California State AGfiled 2022-06-22(44d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-553239
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 9, 2022
- Raw hash
- 94897296c80a6823d5f6391460ae2cd3e90417cb2a0dd3f6d2bf535ff98cb302
Reporting entity
- Name
- Covenant Care California, LLCnorm: covenant care california
Victim entity
- Name
- Covenant Care California, LLCnorm: covenant care california
Incident
- Discovered
- Feb 24, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Regulator citations
- Reporting this incident to law enforcement and appropriate state and federal regulators
- Initial access
- phishing_link
Compliance
- Time to disclose
- 11 weeks(74 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.