INOGEN, INC.
ent_019e2276b1c645e23c5f3b044057101f
Disclosures
7
HHS OCR · State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
29,528
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- INOGEN, INC.
- Normalized
- inogen— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300J8WJIVTOJ8IH97
- SEC EDGAR CIK
- 0001294133
- Domain
- None on record
Disclosure history (7)newest first
- CALIFORNIAHHS OCRas victim2018-04-17
Inogen, Inc. reported to HHS on 2018-04-17 a Hacking/IT Incident affecting 29,528 individuals. Breached information located on Email. An unauthorized individual gained access to an employee email account and set up forwarding of messages from Jan 2, 2018 to Mar 14, 2018. Compromised PHI included names, addresses, DOBs, Medicare IDs, and medical equipment info. Inogen strengthened security controls including disabling email forwarding, password resets, and implementing dual-factor authentication.
- New Hampshire State AGas victim2018-04-13
Inogen, Inc. notified the New Hampshire Attorney General of a data security incident discovered on March 14, 2018. Unauthorized access to an employee email account exposed customer PII, including names, addresses, DOBs, Medicare IDs, and insurance info. 100 NH residents were notified on April 13, 2018. Inogen engaged forensic investigators, reset passwords, implemented MFA, and offered 12 months of credit monitoring.
- Oregon State AGas victim2018-04-13
Inogen, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2018-04-13. The breach occurred during 12/9/2017 - 3/14/2018. The breach was discovered on 3/14/2018. 29,528 individuals were affected. Notice was sent on 4/13/2018.
- Montana State AGas victim2018-04-13
Inogen, Inc. notified Montana residents of a data breach discovered on March 14, 2018, where an employee's email account was accessed without authorization. The incident may have exposed names, addresses, DOB, Medicare IDs, and insurance info. Inogen engaged forensic investigators, reset passwords, implemented MFA, and offered 12 months of credit monitoring.
- Massachusetts State AGas victim2018-04-13
Inogen, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-04-13. 415 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2018-04-13
Inogen, Inc. reported unauthorized access to an employee email account containing customer personal and health information. The breach occurred on December 9, 2017, but was discovered on March 14, 2018. Approximately 3,251 California residents were affected. Data exposed included names, addresses, dates of birth, Medicare IDs, and insurance policy information. Inogen implemented MFA, reset passwords, and engaged forensic investigators.
- Washington State AGas victim2018-04-13
Inogen, Inc. notified Washington AG of unauthorized access to an employee email account on March 14, 2018. The incident exposed customer PII including names, addresses, DOBs, Medicare IDs, and health data. 518 Washington residents were notified on April 13, 2018. Inogen engaged forensic investigators, reset passwords, implemented MFA, and offered 12 months of credit monitoring.