St. Joseph's/Candler Health System, Inc.
ent_019e10cf5be4577444278ac2e369e703
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,400,000
nationwide · HHS OCR GA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- St. Joseph's/Candler Health System, Inc.
- Normalized
- st joseph s candler health system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300PM8IPUYY4BMP91
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- South Carolina State AGas victim2021-08-11
St. Joseph’s/Candler disclosed a ransomware incident where unauthorized access occurred between Dec 18, 2020 and Jun 17, 2021. The attacker encrypted files and potentially accessed patient/employee PII including SSNs, medical records, and financial data. SJ/C isolated systems, engaged forensic firms, notified law enforcement, and offered 1-year Experian IdentityWorks.
- GEORGIAHHS OCRas victim2021-08-10
St. Joseph's/Candler Health System, a Georgia-based healthcare provider, reported a ransomware attack affecting PHI of approximately 1,400,000 individuals. Affected data included names, addresses, dates of birth, driver's license and Social Security numbers, claims information, and diagnoses. The CE notified HHS, affected individuals, and the media; provided substitute notice; offered complimentary credit monitoring; and implemented additional administrative, technical, and security safeguards. Data was located on a network server. No business associate was reported.
- Massachusetts State AGas victim2019-06-05
St. Joseph's/Candler Health Services reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-06-05. 2 Massachusetts residents were affected. The report records the breach type as electronic.