HARBOR HEALTH SERVICES, INC.
ent_019e10ceefe7646197f3449841e12044
Disclosures
5
State AG · HHS OCR · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
17,380
nationwide · HHS OCR MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- HARBOR HEALTH SERVICES, INC.
- Normalized
- harbor health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300M7HCU0CEZ85E37
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Massachusetts State AGas victim2021-12-13
Harbor Health Services, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-12-13. 1 Massachusetts residents were affected. The report records the breach type as paper.
- MASSACHUSETTSHHS OCRas victim2021-04-09
Harbor Health Services, Inc. reported to HHS on 2021-04-09 a Hacking/IT Incident affecting 901 individuals. Breached information located on Network Server. A business associate was subject to a ransomware attack affecting PHI including names, DOB, SSN, and treatment info. CE and BA implemented additional safeguards.
- Massachusetts State AGas victim2021-04-09
Harbor Health Services, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-04-09. 901 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2019-11-18
Harbor Health Services, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-11-18. 3,857 Massachusetts residents were affected. The report records the breach type as electronic.
- MASSACHUSETTSHHS OCRas victim2019-08-09
Harbor Health Services, Inc. (MA) reported to HHS OCR on 2019-08-09 a Hacking/IT Incident affecting 17,380 individuals. An employee was the victim of an email phishing attack, exposing ePHI including names and treatment information stored in Email. The CE notified HHS, affected individuals, and the media, provided substitute notice, and responded by strengthening administrative/technical safeguards and retraining staff on email security.