AltaMed Health Services Corporation
ent_019e07ca3ff1c948a7e952b751797a14
Disclosures
11
HHS OCR · State AG · 1 jurisdiction
Incidents
3
filings grouped by incident
Max affected reported
6,000
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- AltaMed Health Services Corporation
- Normalized
- altamed health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 5493009SCJ0O2XZX3848
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (11)newest first
- CALIFORNIAHHS OCRas victim2026-02-26
AltaMed Health Services Corporation reported to HHS on 2026-02-26 a Hacking/IT Incident affecting 501 individuals. Breached information located on Network Server.
- 🐻California State AGas victim2025-11-27
On December 14, 2025, AltaMed Health Services Corporation experienced a cybersecurity incident that limited access to certain computer systems. An unauthorized individual accessed personal employment information including names, addresses, Social Security numbers, and compensation data. AltaMed initiated incident response protocols, engaged cybersecurity experts, notified law enforcement, and is offering Experian credit monitoring to affected individuals.
- 🐻California State AGas victim2025-06-13
AltaMed Health Services Corporation notified the California Attorney General of an incident where an unauthorized individual accessed an email account between August 5 and August 9, 2024. AltaMed became aware of suspicious activity on August 9, 2024, and contained the incident by disconnecting systems. The investigation, finalized on April 16, 2025, determined that names and potentially protected health information were involved. No evidence of fraudulent use was found. AltaMed enhanced security protocols and offered 24 months of credit monitoring to affected individuals.
- CALIFORNIAHHS OCRas victim2025-06-13
AltaMed Health Services Corporation reported to HHS on 2025-06-13 a Unauthorized Access/Disclosure affecting 4530 individuals. Breached information located on Email.
- 🐻California State AGas victim2023-08-04
AltaMed Health Services reported a data breach involving a third-party software vulnerability in Progress Software's MOVEit Transfer. An unauthorized third party accessed a server on May 29-30, 2023, and downloaded data including names, Social Security numbers, dates of birth, addresses, and gender. The vulnerability was disclosed by Progress on May 31, 2023. AltaMed patched servers, investigated the incident, and is offering 24 months of identity monitoring through Kroll to affected individuals.
- 🐻California State AGas victim2023-06-29
AltaMed Health Services Corporation notified the California AG of a data breach involving its third-party vendor, Vitality Group. The incident stemmed from a vulnerability in the MOVEit file transfer program exploited on May 30, 2023. Vitality identified the risk on June 1, 2023, and disconnected the server. Affected data included names, addresses, dates of birth, email addresses, and Social Security numbers. AltaMed is offering two years of credit monitoring to affected members.
- 🐻California State AGas victim2019-05-30
AltaMed Health Services Corporation reported a data breach involving its business associate, Sharecare Health Data Services (SHDS). An unauthorized third party accessed SHDS's network starting May 21, 2018, obtaining patient files containing names, addresses, DOBs, and medical record numbers. SHDS detected the activity on June 22, 2018, engaged forensic investigators, and notified the FBI. AltaMed provided initial notifications in Feb 2019 and supplemental notifications in May 2019, offering 12 months of credit monitoring via AllClear ID.
- 🐻California State AGas reporting2019-05-15
Centrelake Medical Group, Inc., a subsidiary of AltaMed Health Services Corporation, reported a ransomware incident affecting patient records. The breach occurred between January 9, 2019, and February 19, 2019, when a virus prohibited access to files containing PHI and PII (SSN, driver's licenses). No evidence of actual data misuse was found, but unauthorized access was possible. The company engaged third-party forensics, restored systems, and offered credit monitoring.
- CALIFORNIAHHS OCRas victim2019-02-15
AltaMed Health Services Corporation reported to HHS on 2019-02-15 a Hacking/IT Incident affecting 6000 individuals. Breached information located on Network Server. The incident involved a business associate, ShareCare Health Data Services, which disclosed a data security incident affecting patient PHI (clinical and demographic) on December 31, 2018. AltaMed notified HHS, individuals, and media, and revised its BA agreement.
- 🐻California State AGas victim2019-02-15
AltaMed Health Services Corporation reported a data breach involving its business associate, Sharecare Health Data Services (SHDS). An unauthorized third party accessed SHDS's network between May 21, 2018, and June 22, 2018, compromising patient information including names, addresses, dates of birth, and medical record numbers. AltaMed notified 5,767 California residents in February 2019.
- 🐻California State AGas victim2014-08-29
AltaMed Health Services Corporation notified individuals that a former employee was investigated for identity theft. Law enforcement recovered a hard drive containing personal information. AltaMed determined the former employee accessed patient records in Orange and Los Angeles Counties. The incident involves potential misuse of insider access to PHI and basic identity data.