Mille Lacs Health System
ent_33ca0a7a7067a5dc478620e4
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
10,630
nationwide · HHS OCR MN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Mille Lacs Health System
- Normalized
- mille lacs health system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- New Hampshire State AGas victim2020-05-13
Mille Lacs Health System notified the NH AG of a phishing incident affecting 1 NH resident. Unauthorized actors accessed 28 employee email accounts between Aug 26, 2019 and Jan 7, 2020. PHI, including SSNs, was potentially exposed. MLHS reset passwords, engaged forensic experts, and offered 12 months of credit monitoring.
- Montana State AGas victim2020-05-11
Mille Lacs Health System notified Montana AG of a phishing incident where employee credentials were stolen, granting unauthorized access to email accounts containing PHI and PII. Access occurred Aug 26, 2019 – Jan 7, 2020. Incident discovered Nov 14, 2019. Notices sent May 11, 2020.
- MINNESOTAHHS OCRas victim2020-05-11
Mille Lacs Health System (MN) reported to HHS on 2020-05-11 a Hacking/IT Incident affecting 10,630 individuals. Several employees were victims of an email phishing scheme. PHI exposed included names, addresses, Social Security numbers, and clinical information. Breached information was located in Email. MLHS notified affected individuals, the media, and posted substitute notice. Credit monitoring and identity theft restoration services were offered. Additional safeguards and employee retraining were implemented.
- Massachusetts State AGas victim2020-05-08
Mille Lacs Health System reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-05-08. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Illinois State AGas victim2020-01-01
MILLE LACS HEALTH SYSTEM filed a data-breach notice with the Illinois Attorney General during 2020 (case 20-196). The register records the breach as discovered on May 11, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.