Riverview Health
ent_52e864c027c4fbfecf0c89a2
Disclosures
6
HHS OCR · State AG · 1 jurisdiction
Incidents
1
filings grouped by incident
Max affected reported
2,610
as filed · HHS OCR IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Riverview Health
- Normalized
- riverview health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- riverview.org
Disclosure history (6)newest first
- INDIANAHHS OCRas victim2024-10-25
Riverview Health reported to HHS on 2024-10-25 a Hacking/IT Incident affecting 1562 individuals. Breached information located on Network Server. The cyberattack compromised PHI including names, addresses, dates of birth, diagnoses, conditions, and medications. The entity notified HHS, affected individuals, and the media, and implemented additional technical safeguards.
- 🏎️Indiana State AGas victim2024-10-18
Riverview Health reported a data breach to the Indiana Attorney General. The breach occurred on 2024-05-31 and was reported on 2024-10-18. 1,930 Indiana residents were affected. 1,937 individuals affected in total.
- 🏎️Indiana State AGas victim2024-10-04
Riverview Health reported a data breach to the Indiana Attorney General. The breach occurred on 2024-08-23 and was reported on 2024-10-04. 1 Indiana residents were affected.
- 🏎️Indiana State AGas victim2024-04-03
Riverview Health reported a data breach to the Indiana Attorney General. The breach occurred on 2024-02-24 and was reported on 2024-04-03. 1 Indiana residents were affected.
- 🏎️Indiana State AGas victim2024-02-26
Riverview Hospital Foundation, Inc dba Riverview Health Foundation reported a data breach to the Indiana Attorney General. The breach occurred on 2023-11-25 and was reported on 2024-02-26. 278 Indiana residents were affected. 284 individuals affected in total.
- INDIANAHHS OCRas victim2020-02-28
Riverview Health (IN) reported to HHS on 2020-02-28 an Unauthorized Access/Disclosure affecting 2,610 individuals. Its business associate, Priority Press, Inc., inadvertently emailed PHI (names and addresses) to wrong recipients. Breached information was on Paper/Films medium. The CE notified HHS, affected individuals, and media. The BA implemented additional administrative safeguards, retrained staff, and sanctioned the responsible employee. OCR obtained assurances of corrective actions.