Prisma Health
ent_019ed768a3fe4091ecceb9dd3c5b5c56
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
32,335
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Prisma Health
- Normalized
- prisma health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300B7Z2UDKGKXAS66
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Massachusetts State AGas victim2020-07-29
Prisma Health reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-07-29. 33 Massachusetts residents were affected. The report records the breach type as electronic.
- South Carolina State AGas reporting2020-07-23
Prisma Health, a South Carolina healthcare provider, notified employees of a data breach involving its vendor, PaperlessPay Corporation. Unauthorized access to PaperlessPay's servers occurred around February 18, 2020, exposing employee names, addresses, and Social Security numbers. Prisma Health offered one year of credit monitoring and identity theft insurance via Experian.
- New Hampshire State AGas victim2020-07-23
Prisma Health notified the NH AG of a third-party vendor (PaperlessPay) data incident affecting 4 NH residents. Unauthorized access to vendor servers occurred Feb 18, 2020. PII exposed: names, addresses, SSNs. Notifications sent July 20, 2020, offering credit monitoring.
- Montana State AGas reporting2020-07-20
PaperlessPay Corporation, a vendor for Prisma Health, experienced unauthorized access to its servers on or about February 18, 2020. The incident potentially exposed employee PII, including names, addresses, and Social Security numbers. Prisma Health notified affected individuals on July 20, 2020, offering credit monitoring.
- Indiana State AGas victim2020-07-20
Prisma Health reported a data breach to the Indiana Attorney General. The breach occurred on 2020-02-18 and was reported on 2020-07-20. 24 Indiana residents were affected. 32,335 individuals affected in total.
Supply-chain cascadesreviewed and confirmed
- Prisma Health’s filing is one of at least 13 in the PaperlessPay Corporation supply-chain incident (2020).
Subsidiary disclosures (5)filed by group companies
◈ These filings were made by or about subsidiaries of Prisma Health — not by Prisma Health itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Massachusetts State AGvia Prisma Health-Midlands2019-11-08
Prisma Health-Midlands reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-11-08. 8 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGvia Prisma Health-Midlands2019-11-04
Prisma Health — Midlands notified NH AG of a data incident where a team member's login credentials were compromised, granting access to patient pre-registration forms containing PII and PHI. 2 NH residents were notified on 2019-10-31. Prisma Health reset passwords, implemented safeguards, and notified HHS OCR.
- South Carolina State AGvia Prisma Health-Midlands2019-11-01
Prisma Health - Midlands notified individuals that a team member's login credentials were compromised on August 29, 2019. The compromised credentials provided access to patient pre-registration and volunteer registration forms on the Palmetto Health website. Affected data included names, dates of birth, SSNs, addresses, and health information. Prisma Health reset the password, blocked access to the forms, and offered one year of free credit monitoring and identity theft insurance.
- SOUTH CAROLINAHHS OCRvia Prisma Health-Midlands2019-10-28
Prisma Health - Midlands reported to HHS on 2019-10-28 a Hacking/IT Incident affecting 19060 individuals. Breached information located on Other. Employee credentials posted for sale on dark web, exposing ePHI including names, DOB, SSN, addresses, and insurance info.
- SOUTH CAROLINAHHS OCRvia Prisma Health-Midlands2019-09-06
Prisma - Midlands reported to HHS on 2019-09-06 a Theft affecting 2770 individuals. Breached information located on Paper/Films. An employee's car was burglarized and a binder containing PHI (names, DOB, diagnoses, medications) was stolen. The CE notified HHS, affected individuals, and the media, and implemented additional administrative safeguards and staff retraining.