GUIDEHOUSE INC.
ent_019e227908df341993a77ebcf11d8097
Disclosures
7
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
91,331
nationwide · HHS OCR VA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- GUIDEHOUSE INC.
- Normalized
- guidehouse— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 54930060E7FNHT5KFZ32
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- Montana State AGas reporting2021-07-29
Guidehouse notified Montana OCP of a breach affecting 1 resident of Lehigh Valley Health Network. Attackers exploited a vulnerability in Accellion FTA on Jan 20, 2021. Guidehouse learned of the campaign on March 23, 2021. Data included medical record numbers, account numbers, and insurance info. Notification sent July 29, 2021.
- Montana State AGas reporting2021-07-21
Logan Health notified Montana DOJ of a data breach involving a third-party service provider, Guidehouse. The incident occurred in late January 2021, compromising secure file transfer services. Affected data included names, service locations, patient account numbers, and insurance codes. Guidehouse investigated, engaged experts, and cooperated with law enforcement.
- California State AGas reporting2021-07-16
Guidehouse, a professional services provider, notified the California Attorney General of a cyber attack occurring in late January 2021. The attack compromised a third-party secure file transfer service used by Guidehouse, affecting data for clients including Community Memorial Health System in Ventura, CA. Guidehouse discovered the incident in late March 2021. Affected data may include names, dates of birth, member IDs, addresses, and certain medical information. Guidehouse ceased using the compromised service, engaged cybersecurity experts, and cooperated with federal law enforcement. Affected individuals were offered two years of credit monitoring.
- VIRGINIAHHS OCRas victim2021-07-15
Guidehouse, a business associate, reported a cyber-attack on its secure file transfer device that affected 91,331 individuals. The breach, reported to HHS on 2021-07-15, compromised protected health information including names, dates of birth, diagnoses, conditions, and claims information. In response, Guidehouse applied a critical patch to mitigate the vulnerability, discontinued the compromised device, and transitioned to a different network.
- Massachusetts State AGas victim2021-06-28
Guidehouse reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-06-28. 277 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas reporting2021-06-25
Guidehouse filed a Montana breach notification on behalf of Banco Popular de Puerto Rico regarding a third-party vendor breach involving Accellion, Inc. software. Compromised data included names, addresses, account numbers, and Social Security numbers. Experian credit monitoring was offered.
- Illinois State AGas victim2021-01-01
GUIDEHOUSE filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-248). The register records the breach as discovered on May 20, 2021. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.