ELARA CARING
ent_04be470531f681d50c017fae
Disclosures
11
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
100,487
nationwide · HHS OCR TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- ELARA CARING
- Normalized
- elara caring— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (11)newest first
- Illinois State AGas victim2026-07-01
ELARA CARING filed a data-breach notice with the Illinois Attorney General in July 2026 (case 26-07-1346). The register records the breach as discovered on April 17, 2026. Personal information types reported: drivers license, medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Texas State AGas victim2026-06-25
Elara Caring based in Dallas, Texas, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-04-17 and reported on 2026-06-25. 2,631 Texas residents were affected. 22,172 individuals affected in total. Types of information involved: Name of individual;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- Massachusetts State AGas victim2026-06-24
Elara Caring notified Massachusetts residents of a data security incident involving unauthorized access to employee email accounts via phishing. The actor redirected employee paychecks and accessed patient files containing personal information. Elara terminated access, reset credentials, and engaged external experts. Affected data includes identity and financial information. No specific count was provided in this notice.
- TEXASHHS OCRas victim2026-06-23
Elara Caring reported to HHS on 2026-06-23 a Hacking/IT Incident affecting 22172 individuals. Breached information located on Email.
- Texas State AGas victim2026-05-14
Elara Caring based in Dallas, Texas, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-03-12 and reported on 2026-05-14. 3,311 Texas residents were affected. 10,490 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- Massachusetts State AGas victim2026-05-12
Elara Caring notified Massachusetts residents of a data security incident involving a third-party vendor. Between November 4-6 and November 14-17, 2025, an unauthorized actor accessed patient documents containing personal information, including Social Security numbers. Elara terminated the vendor relationship, conducted a security review, and provided 24 months of complimentary credit monitoring via Cyberscout/TransUnion. The incident was discovered in March 2026, with notifications sent in May 2026.
- TEXASHHS OCRas victim2026-05-12
Elara Caring reported to HHS on 2026-05-12 a Hacking/IT Incident affecting 10490 individuals. Breached information located on Network Server.
- Massachusetts State AGas victim2021-03-01
BW Homecare Holdings, LLC, d.b.a. Elara Caring reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-03-01. 3,926 Massachusetts residents were affected. The report records the breach type as electronic.
- TEXASHHS OCRas victim2021-02-24
BW Homecare Holdings, LLC d.b.a. Elara Caring reported to HHS on 2021-02-24 a Hacking/IT Incident affecting 100,487 individuals. Breached information located on Email. An employee was the subject of an email phishing scheme. PHI included names, DOB, addresses, driver’s license, SSN, financial info, and treatment info. CE provided credit monitoring and retrained staff.
- Montana State AGas victim2021-02-17
Elara Caring notified Montana AG of a Business Email Compromise (BEC) incident. On Dec 9, 2020, phishing emails compromised two employee accounts, allowing the attacker to send further phishing emails until Dec 16. Patient data exposed included PHI, SSNs, DOBs, financial info, and driver's licenses. No evidence of data misuse or malware. Elara engaged forensic specialists, reported to FBI, implemented MFA, and offered credit monitoring.
- Illinois State AGas victim2021-01-01
ELARA CARING filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-103). The register records the breach as discovered on December 9, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.