Bay Area Community Health
ent_142f4e064466acfee3a5f31f
Disclosures
2
State AG · HHS OCR · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
9,912
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Bay Area Community Health
- Normalized
- bay area community health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- California State AGas victim2026-01-16
Bay Area Community Health notified patients of a data breach involving a third-party vendor, TriZetto, which works with their electronic medical record system (OCHIN). An unauthorized individual gained access to TriZetto's systems. The breach window is listed as November 1, 2024, to October 2, 2025. Bay Area Community Health was notified on December 15, 2025. Affected data may include names, social security numbers, dates of birth, contact information, and health-related or insurance information. The organization is working with OCHIN to ensure security measures are in place and reviewing its own processes.
- CALIFORNIAHHS OCRas victim2026-01-16
Bay Area Community Health reported to HHS on 2026-01-16 a Hacking/IT Incident affecting 9,912 individuals. Breached information located on Network Server. A subcontractor of its business associate experienced a cyber-attack affecting PHI including clinical and demographic information.
Supply-chain cascadesreviewed and confirmed
- Bay Area Community Health’s filing is one of at least 21 in the TriZetto Provider Solutions supply-chain incident (2025).