Family Service Rochester
ent_03f3ce2d8289f4951496df35
Disclosures
4
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
17,037
nationwide · HHS OCR MN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Family Service Rochester
- Normalized
- family service rochester— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Montana State AGas victim2017-02-17
Family Service Rochester notified individuals of a ransomware incident discovered on Jan 26, 2017, involving unauthorized access via a single user account starting Dec 26, 2016. Affected data included PII and medical information. The organization terminated access, notified law enforcement, and offered one year of identity protection services.
- MINNESOTAHHS OCRas victim2017-02-17
Family Service Rochester, a Minnesota healthcare provider, discovered on January 26, 2017 that an unauthorized user had accessed a computer server containing names, addresses, dates of birth, and Social Security numbers of approximately 17,037 patients. The entity terminated access to the remote desktop and the compromised "programs" account, disabled stale accounts, revised HIPAA policies, and notified HHS, affected individuals, and the media.
- New Hampshire State AGas victim2017-02-17
Family Service Rochester, a nonprofit in Rochester, MN, experienced a ransomware incident. Unauthorized access via a single user account occurred from Dec 26, 2016 to Jan 25, 2017. Discovered Jan 26, 2017. Data accessed included names, addresses, DOBs, and medical info. Notifications sent Feb 21, 2017 to affected individuals, including 2 NH residents.
- Massachusetts State AGas victim2017-02-17
Family Service Rochester reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-02-17. 8 Massachusetts residents were affected. The report records the breach type as electronic.