GEISINGER HEALTH
ent_019f9a9f8449bacb8168fddcf93b7ca1
Disclosures
4
HHS OCR · State AG · 2 jurisdictions
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
1,276,026
nationwide · HHS OCR PA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- GEISINGER HEALTH
- Normalized
- geisinger health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300BYIDET8YMST888
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- mychart.mycarecompass.org
Disclosure history (4)newest first
- PENNSYLVANIAHHS OCRas victim2024-06-21
Geisinger reported to HHS on 2024-06-21 a Unauthorized Access/Disclosure affecting 1,276,026 individuals. Breached information located on Network Server. Business associate was present.
- PENNSYLVANIAHHS OCRas victim2020-10-19
Geisinger reported to HHS on 2020-10-19 a Hacking/IT Incident affecting 86412 individuals. Breached information located on Network Server. A business associate experienced a ransomware attack affecting ePHI (names, DOB, addresses, treatment info). Geisinger notified HHS, individuals, and media.
- PENNSYLVANIAHHS OCRas victim2020-09-23
Geisinger Health reported to HHS on 2020-09-23 a Unauthorized Access/Disclosure affecting 717 individuals. Breached information located on Electronic Medical Record. A workforce member impermissibly accessed ePHI including names, SSNs, addresses, birthdates, medications, diagnoses, and lab results. The employee was sanctioned and additional safeguards implemented.
- Illinois State AGas victim2020-01-01
GEISINGER HEALTH filed a data-breach notice with the Illinois Attorney General during 2020 (case 20-421). The register records the breach as discovered on February 7, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.