CSI FINANCIAL SERVICES, LLC
ent_019e5b5ccd98857eac472113e1701dcb
Disclosures
10
HHS OCR · State AG · 9 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
209,719
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CSI FINANCIAL SERVICES, LLC
- Normalized
- csi financial— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300S8VTWX18N0N987
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- CALIFORNIAHHS OCRas victim2021-07-10
CSI Financial Services, LLC dba ClearBalance (CA), a business associate, reported to HHS on 2021-07-10 a Hacking/IT Incident affecting 3,191 individuals. Employees were victims of an email phishing scheme compromising ePHI including names, addresses, driver's license numbers, Social Security numbers, diagnoses, and financial information. The BA implemented email security controls, revised policies and procedures, and OCR provided technical assistance on its security management process. Breached information located on Email.
- Maine State AGas victim2021-07-09
CSI Financial Services, LLC (ClearBalance) reported a phishing incident occurring between March 8, 2021, and April 26, 2021. The breach affected 209,719 individuals, including 108 in Maine. Driver's license numbers and names were compromised. The company provided 24 months of credit monitoring and identity theft protection services through IDX.
- California State AGas victim2021-07-09
CSI Financial Services, LLC (ClearBalance) experienced unauthorized access to certain email accounts between March 8, 2021, and April 26, 2021. The incident was detected on April 26, 2021, when an attempted unauthorized wire transfer was prevented. The breach affected approximately 14,953 individuals, including patients and employees, exposing personal information such as names, SSNs, banking details, and health information. The company engaged forensic investigators, contacted the FBI, and implemented stronger access controls.
- Oregon State AGas victim2021-07-09
CSI Financial Services, LLC (“ClearBalance”) reported a data breach to the Oregon Attorney General. The breach was reported on 2021-07-09. The breach occurred during 3/8/2021 - 4/26/2021. The breach was discovered on 4/26/2021. 209,719 individuals were affected. Notice was sent on 7/9/2021.
- Indiana State AGas victim2021-07-09
CSI Financial Services, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2021-03-08 and was reported on 2021-07-09. 17,663 Indiana residents were affected. 209,719 individuals affected in total.
- Montana State AGas victim2021-07-09
CSI Financial Services, LLC notified Montana AG of a phishing incident affecting email accounts of patients and customers. Unauthorized access occurred March 8–April 26, 2021. Data exposed included names, SSNs, DOBs, financial account info, and PHI. 833 individuals affected total (5 in Montana). FBI notified; forensic investigators engaged.
- Washington State AGas victim2021-07-09
CSI Financial Services, LLC (ClearBalance) reported a phishing incident in Washington. Unauthorized access to cloud email accounts occurred from March 8 to April 26, 2021, discovered on April 26. Data exposed included names, SSNs, DOBs, financial account info, and PHI affecting 4,255 Washington residents. Remediation included password resets and enhanced access controls.
- Massachusetts State AGas victim2021-07-09
CSI Financial Services, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-07-09. 94 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2021-07-09
CSI Financial Services, LLC (ClearBalance) reported a security incident to the New Hampshire Attorney General on July 8, 2021. Unauthorized access to cloud-based email accounts occurred between March 8 and April 26, 2021, following a detected fraudulent wire transfer attempt. The breach exposed personal information of approximately 30 New Hampshire residents, including names, SSNs, tax IDs, DOB, healthcare account details, and banking information. ClearBalance engaged forensic investigators, secured the email environment, and provided 24 months of identity theft protection services to affected individuals.
- Illinois State AGas victim2021-01-01
CSI FINANCIAL SERVICES, LLC filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-261). The register records the breach as discovered on April 26, 2021. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.