Dignity Health Lassen Medical Clinic
ent_44b5ba1a36a31e2c039ad250
Disclosures
4
State AG · HHS OCR · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
64,946
as filed · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Dignity Health Lassen Medical Clinic
- Normalized
- dignity health lassen medical clinic— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🦞Maine State AGas victim2025-03-25
Dignity Health Lassen Medical Clinic, a healthcare organization, reported an external system breach (hacking) that occurred on September 17, 2024. The breach was discovered on December 3, 2024, and affected 2 Maine residents. The company provided written notification to affected individuals on January 13, 2025, and offered 12 months of complimentary credit monitoring services.
- ⛰️New Hampshire State AGas victim2025-03-25
Dignity Health Lassen Medical Clinics (Red Bluff and Cottonwood, CA) reported a cyber event on Sept 20, 2024. Unauthorized access occurred Sept 17-20, 2024. Patient PHI was accessed/exfiltrated. Kroll identity monitoring offered. Investigation conducted with external forensics vendor.
- 🐻California State AGas victim2025-03-25
Dignity Health Lassen Medical Clinic experienced an unauthorized access incident between September 17 and September 20, 2024. The clinic discovered the active cyber event on September 20, 2024. An unauthorized third party gained access to the network and obtained copies of confidential patient medical information, though not directly from the Electronic Medical Record system. The network was temporarily disabled and restored with additional security tools. Identity monitoring services were provided to affected individuals.
- CALIFORNIAHHS OCRas victim2024-12-23
Dignity Health Lassen Medical Clinic (CA) reported to HHS on 2024-12-23 a ransomware incident affecting 64,946 individuals. Breached information was located on a Network Server. PHI involved included names, addresses, dates of birth, social security numbers, drivers' license numbers, and financial and health insurance information. In response, the CE implemented additional administrative, technical, and security safeguards and provided free credit monitoring to affected individuals.