HP Enterprise Services
ent_019de1dc109340b35425223bc94f1c2b
Disclosures
2
Leak Site · HHS OCR · 2 jurisdictions
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
1,090
nationwide · HHS OCR KY
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- HP Enterprise Services
- Normalized
- dxc technology— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300DOVZ3EDJB7O259
- SEC EDGAR CIK
- 0001688568
- Domain
- dxc.com
Disclosure history (2)newest first
- GLOBALLeak Siteas victim2025-02-10
DXC Technology is a leading global IT services company that specializes in helping businesses drive digital transformation. Originally formed as a result of the merger between CSC and the Enterprise Services business of Hewlett Packard Enterprise (HPE) in 2017, DXC provides end-to-end IT services in over 70 countries, catering to various industries and sectors. It offers a broad range of services including analytics, consulting, application development, and security.
- KENTUCKYHHS OCRas reporting2012-12-28
HP Enterprise Services (Business Associate, KY) reported to HHS on 2012-12-28 a Theft affecting 1,090 individuals. An employee of a subcontractor responded to a telephone phishing (vishing) attack and permitted a hacker to remotely access the subcontractor's laptop, which improperly stored PHI including names, dates of birth, diagnosis codes, SSNs, and treatment descriptions. The subcontractor terminated the responsible employee, initiated laptop PHI audits, and retrained staff. OCR obtained assurances that corrective actions were completed. Breached information located on Laptop.
Subsidiary disclosures (7)filed by group companies
◈ These filings were made by or about subsidiaries of HP Enterprise Services — not by HP Enterprise Services itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Illinois State AGvia ALLIANCE-ONE SERVICES, INC.2023-01-01
ALLIANCE-ONE SERVICES filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-483). The register records the breach as discovered on May 29, 2023. Additional entities named: PBI, MOVEIT. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Oregon State AGvia Century, LLC2017-03-10
Century, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2017-03-10. The breach occurred during 2/1/2016 - 12/31/2016. The breach was discovered on 2/8/2017. Notice was sent on 2/19/2017.
- Washington State AGvia Century, LLC2017-02-25
Century, LLC reported a cybersecurity incident involving unauthorized access to its e-commerce platform hosted by third-party provider Aptos, Inc. The intrusion, which occurred between February and December 2016, exposed customer names, addresses, phone numbers, and payment card data. Century notified 639 Washington residents in February 2017.
- Montana State AGvia Century, LLC2017-02-19
Century, LLC notified Montana AG of a data breach involving its ecommerce provider Aptos. Unauthorized access occurred Feb-Dec 2016, exposing names, addresses, and credit/debit card data. Mandiant was engaged to remove malware and monitor systems. FBI Cyber Crimes Division investigated.
- Massachusetts State AGvia COMPUTER SCIENCES CORPORATION2013-04-08
Computer Sciences Corporation reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2013-04-08. 1,112 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGvia COMPUTER SCIENCES CORPORATION2013-04-03
Computer Sciences Corporation (CSC) reported the loss of a thumb drive containing personal information of providers, including names, Social Security Numbers, Employer Identification Numbers, and dates of birth. The drive, used in services for the State of North Carolina, was lost in CSC facilities in Raleigh, NC, in late February 2013 and discovered in early March 2013. CSC notified the State of North Carolina and offered affected individuals one year of free credit monitoring and identity protection services from Equifax. The incident involved physical loss of media containing sensitive identity and employment data.
- New Hampshire State AGvia COMPUTER SCIENCES CORPORATION2013-04-03
Computer Sciences Corporation (CSC) notified the NH Attorney General of a breach affecting 274 NH residents. A thumb drive containing Medicare Exclusion Database records (names, SSNs, EINs, DOBs) was lost in late February 2013 at CSC facilities in Raleigh, NC. CSC discovered the loss in early March, notified NC authorities, and offered 1 year of credit monitoring to affected residents.