HOSPITAL SISTERS HEALTH SYSTEM
ent_019e1fc2943263df0a95ee9773079e0e
Disclosures
7
State AG · HHS OCR · 7 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
240,893
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- HOSPITAL SISTERS HEALTH SYSTEM
- Normalized
- hospital sisters health system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 5493003FCOY2H48ASF97
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- ⛰️New Hampshire State AGas victim2025-02-07
Hospital Sisters Health System (HSHS) filed a supplemental notice with the New Hampshire Attorney General regarding a data security incident. HSHS discovered unauthorized third-party access to its network on August 27, 2023. The attacker accessed files between August 16 and August 27, 2023. The incident affected 41 New Hampshire residents, whose personal information (including SSNs and medical IDs) was accessed. HSHS engaged forensic investigators, notified law enforcement, and offered credit monitoring services.
- 🐻California State AGas victim2025-02-06
Hospital Sisters Health Systems (HSHS) discovered on August 27, 2023, that an unauthorized third party gained temporary access to its network between August 16 and August 27, 2023. The incident potentially exposed personal information including names, addresses, dates of birth, medical record numbers, limited treatment information, health insurance information, Social Security numbers, and driver's license numbers. HSHS contained the incident, engaged forensic investigators, and is offering one year of credit monitoring to affected individuals.
- 🌲Washington State AGas victim2025-02-06
Hospital Sisters Health System, a health sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2023-08-27 and filed notice on 2025-02-06. 662 Washington residents were affected. 529 days elapsed between awareness and notification. 11 days to identify the breach. 0 days to contain the breach.
- 🦞Maine State AGas victim2025-02-06
Hospital Sisters Health System ("HSHS") reported an external system breach (hacking) that occurred between August 16, 2023, and August 27, 2023. The breach was discovered on August 27, 2023, and affected 79 Maine residents. HSHS offered 12 months of Equifax Credit Watch Gold identity theft protection services to those affected.
- 🏎️Indiana State AGas victim2024-08-30
Hospital Sisters Health System reported a data breach to the Indiana Attorney General. The breach occurred on 2023-08-16 and was reported on 2024-08-30. 28 Indiana residents were affected. 240,893 individuals affected in total.
- 🦬Montana State AGas victim2024-08-30
Hospital Sisters Health System reported a data breach to the Montana Attorney General. The breach was reported on 2024-08-30. The breach occurred from 8/16/2023 to 8/27/2023. 1 Montana residents were affected.
- ILHHS OCRas victim2020-01-31
Hospital Sisters Health System reported to HHS on 2020-01-31 a Hacking/IT Incident affecting 16,167 individuals. Breached information located on Email. Employees were subjects of an email phishing scheme exposing PHI including names, SSNs, addresses, DOB, diagnoses, and medications. Response included credit monitoring, security safeguards, and staff retraining.