Heartland Alliance
ent_44815d05333904348b3b06ac
Disclosures
5
State AG · HHS OCR · Leak Site · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
46,694
as filed · HHS OCR FEDERAL
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Heartland Alliance
- Normalized
- heartland alliance— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- ⛰️New Hampshire State AGas victim2022-12-20
Heartland Alliance notified the NH AG of a data security incident in late January 2022 where an unauthorized actor accessed personal information including SSNs, driver's licenses, financial accounts, and health data. Two NH residents were affected. Notices were sent in December 2022. Credit monitoring was offered.
- 🦞Maine State AGas victim2022-12-19
Heartland Alliance, a non-profit organization, reported a data breach that affected 54,914 individuals, including 3 Maine residents. The breach, an external system hacking incident, occurred between January 2, 2022, and January 26, 2022, and was discovered on December 8, 2022. The compromised information included names or other personal identifiers in combination with financial account numbers or credit/debit card numbers, along with their security codes, access codes, passwords, or PINs. Affected individuals were notified in writing on December 15, 2022. Heartland Alliance offered 12 months of identity theft protection services through IDX, which includes credit monitoring, dark web monitoring, and identity protection services.
- 🦬Montana State AGas victim2022-12-15
Heartland Alliance reported a data breach to the Montana Attorney General. The breach was reported on 2022-12-15. The breach occurred on 4/27/2022. 3 Montana residents were affected.
- FEDERALHHS OCRas victim2022-11-08
Heartland Alliance reported to HHS on 2022-11-08 a Hacking/IT Incident affecting 46694 individuals. Breached information was located on a Network Server. The business associate experienced a cyber-attack that compromised protected health information (PHI). The BA notified HHS, affected individuals, and the media, and is no longer in operation.
- GLOBALLeak Siteas victim2022-02-08