Covenant Care California, LLC
ent_162e982ea383e0cd8ab67886
Disclosures
20
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
4
incidents joining 2+ filings here
Max affected reported
31,255
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Covenant Care California, LLC
- Normalized
- covenant care california— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (20)newest first
- California State AGas victim2024-08-29
Covenant Care California, LLC experienced unauthorized access to its computer network between November 12 and November 14, 2023. An unauthorized party copied files containing patient information, including names and potentially other health data. The incident was discovered on November 14, 2023. The company secured systems, investigated the breach, and notified law enforcement and regulators. Affected individuals are offered credit monitoring.
- Massachusetts State AGas victim2024-08-29
Covenant Care California, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-08-29. 7 Massachusetts residents were affected.
- Illinois State AGas victim2024-08-01
COVENANT CARE CALIFORNIA, LLC filed a data-breach notice with the Illinois Attorney General in August 2024 (case 24-08-060). The register records the breach as discovered on November 12, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- CALIFORNIAHHS OCRas victim2024-01-12
Covenant Care California, LLC reported to HHS on 2024-01-12 a Hacking/IT Incident affecting 501 individuals. Breached information located on Network Server.
- California State AGas victim2022-10-27
Covenant Care California, LLC reported unauthorized access to employee email accounts at its Silver Hills Health Care Center. The incident occurred between Feb 24 and May 3, 2022, with suspicious activity identified in February 2022. Patient and responsible party information, including PHI and PII, was potentially exposed. The company secured accounts, engaged forensic investigators, notified regulators, and offered 12 months of identity monitoring.
- California State AGas victim2022-09-01
Covenant Care California, LLC notified employees of unauthorized access to email accounts between Feb 24 and May 3, 2022. Suspicious activity was identified in February 2022. The investigation is ongoing. Affected data includes names. The company engaged forensic investigators, notified law enforcement, and is offering 12 months of identity monitoring. Remediation includes enhanced email safeguards and employee training.
- Indiana State AGas victim2022-08-31
Covenant Care California, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2022-02-24 and was reported on 2022-08-31. 2 Indiana residents were affected. 31,255 individuals affected in total.
- California State AGas victim2022-06-22
Covenant Care California, LLC disclosed that an unauthorized actor gained access to certain employee email accounts associated with its Home Health services between February 24 and March 22, 2022. The company identified suspicious activity in February 2022. The incident potentially exposed patient and responsible party information, including names and health-related data. Covenant Care engaged forensic investigators, secured accounts, and is offering 12 months of identity monitoring via Kroll. The investigation is ongoing.
- California State AGas reporting2022-05-17
Rehabfocus Home Health, Inc. (operating as Focus Health) experienced a data breach between February 24, 2022, and March 4, 2022. An unauthorized actor accessed an employee's Microsoft 365 email account via a phishing email. The incident potentially exposed patient records, including protected health information (PHI) and personally identifiable information (PII). The company secured the account, engaged forensic investigators, and is offering one year of identity monitoring to affected individuals.
- California State AGas victim2022-05-09
Covenant Care California, LLC notified the California Attorney General of a data breach involving Wagner Heights Nursing and Rehabilitation Center. On February 24, 2022, an employee's email account was compromised via a phishing email, allowing an unauthorized actor access for several hours. The incident potentially exposed patient records, including protected health information (PHI) and personally identifiable information (PII). The company secured the account, engaged forensic investigators, and is offering one year of identity monitoring to affected individuals.
- CALIFORNIAHHS OCRas victim2022-05-06
Covenant Care California, LLC, on behalf of Wagner Heights Nursing and Rehabilitation Center reported to HHS on 2022-05-06 a Hacking/IT Incident affecting 23,093 individuals. Breached information located on Email. An employee was the subject of an email phishing scheme that affected the protected health information (PHI) of 23,093 individuals. The PHI involved included names, addresses, dates of birth, Social Security numbers, claims and financial information, medications, diagnoses, and other treatment information.
- Montana State AGas reporting2022-05-06
Covenant Care California, LLC notified Montana residents that an employee at Wagner Heights Nursing and Rehabilitation Center had her email account compromised via phishing on February 24, 2022. Unauthorized actors accessed patient records containing PII and PHI. The company secured the account, engaged forensic investigators, and offered one year of credit monitoring.
- Illinois State AGas victim2022-01-01
CONVENANT CARE CALIFORNIA LLC filed a data-breach notice with the Illinois Attorney General during 2022 (case 2022-339). The register records the breach as discovered on May 6, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2022-01-01
COVENANT CARE CALIFORNIA, LLC filed a data-breach notice with the Illinois Attorney General during 2022 (case 2022-314). The register records the breach as discovered on February 24, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2022-01-01
COVENANT CARE CALIFORNIA, LLC filed a data-breach notice with the Illinois Attorney General during 2022 (case 2022-409). The register records the breach as discovered on May 6, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2019-03-20
Covenant Care California, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-03-20. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2019-03-06
Covenant Care California, LLC reported that an unauthorized actor accessed an employee email account between January 22 and January 29, 2019, using compromised credentials. The incident potentially exposed PHI and PII for 7,585 California residents, including names, SSNs, and medical records. The company secured the account, engaged forensic investigators, and notified affected individuals and regulators.
- Montana State AGas victim2019-03-06
Covenant Care California, LLC notified Montana residents of a data privacy incident involving unauthorized access to an employee email account between Jan 22-29, 2019. The breach exposed patient PHI, SSNs, and financial data. The company engaged forensic investigators, notified law enforcement, and offered 12 months of credit monitoring.
- CALIFORNIAHHS OCRas victim2019-03-06
Covenant Care California, LLC reported to HHS on 2019-03-06 a Hacking/IT Incident affecting 10,831 individuals. Breached information located on Email. The incident involved a phishing scheme compromising an employee's email account, exposing PHI including names, DOBs, SSNs, and medical records. CCC implemented additional safeguards and offered credit monitoring.
- Illinois State AGas victim2019-01-01
COVENANT CARE CALIFORNIA, LLC filed a data-breach notice with the Illinois Attorney General during 2019 (case 2019-170). The register records the breach as discovered on January 22, 2019. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.