UMass Memorial Health Care Master Pension Trust
ent_019e0d8b142748f74ef8fdd9941a52ae
Disclosures
4
HHS OCR · State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
209,048
nationwide · HHS OCR MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- UMass Memorial Health Care Master Pension Trust
- Normalized
- umass memorial health care master pension— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900R7Q3OJ6MSXB349
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- umassmemorial.org
Disclosure history (4)newest first
- MASSACHUSETTSHHS OCRas victim2022-02-28
UMass Memorial Health Care (MA) reported to HHS on 2022-02-28 a Hacking/IT Incident (email phishing) affecting 4,270 individuals. Several employees were targeted by a phishing scheme compromising PHI including names, SSNs, dates of birth, addresses, driver's license numbers, diagnoses, lab results, and health insurance information. Breached information was located in Email. The CE notified HHS, individuals, and media, offered credit monitoring, and implemented additional safeguards and staff retraining.
- 🦞Maine State AGas victim2021-10-15
UMass Memorial Health reported a phishing incident that occurred between June 24, 2020, and January 7, 2021. The breach was discovered on August 25, 2021. The incident compromised names and financial account numbers or credit/debit card numbers with their access codes. In response, the company offered one year of credit monitoring and identity theft protection services through Experian to the 3 affected Maine residents.
- MASSACHUSETTSHHS OCRas victim2021-10-15
UMass Memorial Health Care, Inc. reported to HHS on 2021-10-15 a Hacking/IT Incident affecting 209,048 individuals. Breached information located on Email. An employee was the subject of an email phishing scheme affecting PHI including names, dates of birth, and Social Security numbers.
- ⛰️New Hampshire State AGas victim2021-10-15
UMass Memorial Health notified the New Hampshire Attorney General of a phishing incident affecting employee email accounts. Unauthorized access occurred between June 24, 2020, and January 7, 2021. On August 25, 2021, the organization identified 17 New Hampshire residents whose PII (SSN, driver's license, financial account info) was contained in compromised emails. Total individuals notified under HIPAA was 1,370. Notifications began October 15, 2021, offering one year of credit monitoring.