BAY ALARM MEDICAL, LLC
ent_019e10ef7acb1ec9357f8369b4afc9b1
Disclosures
5
HHS OCR · State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,633
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- BAY ALARM MEDICAL, LLC
- Normalized
- bay alarm medical— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 9845002FA4AJ07D9FD31
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- MARYLANDHHS OCRas victim2025-10-09
Bay Medical LLC, a Maryland-based healthcare provider, reported a Hacking/IT Incident involving email to the HHS OCR Breach Portal on 2025-10-09. The breach affected 1,483 individuals. No business associate was reported as present. The OCR listing provides no further detail on root cause, threat actor, or specific data elements beyond the email location of breached PHI.
- Indiana State AGas victim2021-05-14
Bay Alarm Medical, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2021-02-19 and was reported on 2021-05-14. 73 Indiana residents were affected. 3,633 individuals affected in total.
- Maine State AGas victim2021-05-14
Bay Alarm Medical, LLC reported an external system breach (hacking) occurring between February 19, 2021, and April 9, 2021, discovered on April 28, 2021. The incident affected 3,633 individuals, including 16 Maine residents. Acquired data included names and financial account or credit/debit card numbers (with security codes/PINs). Written notifications were sent in May 2021.
- Massachusetts State AGas victim2021-05-14
Bay Alarm Medical LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-05-14. 99 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2021-05-14
Bay Alarm Medical, LLC notified Montana residents of a data security incident where its website payment platform was accessed without authorization between Feb 19 and Apr 9, 2021. The company discovered the incident on April 8, 2021, engaged forensic investigators, and reported to payment card brands. Affected data included names, addresses, and payment information.