PIH HEALTH, INC.
ent_019e10cb61ada244f70fe82a095f384d
Disclosures
7
State AG · HHS OCR · 5 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
2,947,264
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- PIH HEALTH, INC.
- Normalized
- pih health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300IFY1T501PZ2S75
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- 🍁Vermont State AGas victim2026-04-30
PIH Health reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-04-30. The reporting organization type is Health Care. 138 Vermont residents were affected. Categories of data breached: Social Security Numbers, Health Records.
- 🦫Oregon State AGas victim2026-03-18
PIH Health, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2026-03-18. The breach occurred during 12/1/2024. The breach was discovered on 12/16/2025. 2,351 individuals were affected. Notice was sent on 2/27/2026.
- 🌲Washington State AGas victim2026-03-04
PIH Health, Inc., a health sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2024-12-01 and filed notice on 2026-03-04. 3,639 Washington residents were affected. 458 days elapsed between awareness and notification.
- ⭐Texas State AGas victim2026-03-03
PIH Health, Inc. based in Whittier, California, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-12-16 and reported on 2026-03-03. 8,434 Texas residents were affected. 1,369,533 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information. Consumers were notified via U.S. Mail.
- 🐻California State AGas victim2026-02-27
PIH Health, Inc. notified the California Attorney General of a data security incident where an unauthorized actor accessed personal information. The breach occurred between November 14 and December 2, 2024, and was discovered on December 1, 2024. The incident affected 174 individuals, including Rhode Island residents. Affected data included names and other personal identifiers. PIH Health secured the network, conducted a forensic review, and is offering complimentary identity protection services.
- CALIFORNIAHHS OCRas victim2025-01-31
PIH Health, Inc. reported to HHS on 2025-01-31 a Hacking/IT Incident affecting 2,947,264 individuals. Breached information located on Network Server.
- 🐻California State AGas victim2020-01-10
PIH Health, a California healthcare provider, notified the California Attorney General of a data security incident involving unauthorized access to employee email accounts via a targeted phishing campaign. The breach affected approximately 159,879 California residents, exposing personal information, SSNs, driver's license numbers, medical information, and credentials. PIH Health engaged cybersecurity experts, reset passwords, and offered credit monitoring.