Mercy Health
ent_019fa497f7e55560d55d7a862520bfcf
Disclosures
3
HHS OCR · State AG · 3 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
11,187
nationwide · HHS OCR MO
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Mercy Health
- Normalized
- mercy health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 6OUMQ3XRVV6QKG3QYX23
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- MOHHS OCRas victim2020-12-04
Mercy Health reported to HHS on 2020-12-04 a Unauthorized Access/Disclosure affecting 11,187 individuals. Breached information located on Electronic Medical Record. An employee impermissibly accessed PHI including names, addresses, DOB, diagnoses, and lab results. The entity sanctioned the employee, provided credit monitoring, and implemented technical safeguards.
- 🦬Montana State AGas victim2020-10-18
Mercy Health Foundation reported a data breach to the Montana Attorney General. The breach was reported on 2020-10-18. The breach occurred from 4/18/2020 to 5/7/2020. 24 Montana residents were affected.
- 💎Delaware State AGas victim2020-09-18
Mercy Health Foundation, Inc. notified individuals of a ransomware incident involving its third-party vendor, Blackbaud, Inc. The attack occurred in May 2020, and the Foundation was notified on July 16, 2020. The incident potentially exposed donor names, dates of birth, and health visit details. Sensitive data like SSNs and financial card numbers were encrypted. No fraud was identified.