SAC Health System
ent_0bd7b280acf60921be532d35
Disclosures
3
HHS OCR · State AG · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
77,842
as filed · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- SAC Health System
- Normalized
- sac health system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- CALIFORNIAHHS OCRas victim2022-05-05
SAC Health System (CA) reported to HHS on 2022-05-05 a Theft affecting 77,842 individuals. A break-in occurred at the covered entity's paper record storage facility, compromising PHI including names, addresses, dates of birth, diagnoses, and conditions (Paper/Films). The CE notified HHS, affected individuals, the media, and provided substitute notice. Credit monitoring services were offered and additional administrative and physical safeguards were implemented.
- CALIFORNIAHHS OCRas victim2021-05-10
SAC Health Systems (CA, Healthcare Provider) reported to HHS on 2021-05-10 that its business associate experienced a ransomware attack affecting the ePHI of 28,128 individuals. Breached information was located on a Network Server. Exposed data included names, addresses, Social Security numbers, financial and health insurance information, medications prescribed, and other treatment information. The CE notified HHS, affected individuals, and the media, and subsequently terminated its relationship with the affected BA.
- 🐻California State AGas victim2021-05-10
SAC Health System notified California AG of a data breach involving third-party provider Netgain Technology, LLC. Unauthorized access occurred between Nov 15-22, 2020, confirmed Jan 15, 2021. Affected data includes names, SSNs, DOBs, driver's licenses, financial accounts, and PHI. SAC Health System terminated Netgain, removed data, offered credit monitoring, and notified regulators. No actual misuse known.