Project Hospitality
ent_54ef491a6d9d96f0
Disclosures
7
State AG · HHS OCR · Leak Site · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
89,476
nationwide · State AG IN
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Project Hospitality
- Normalized
- project hospitality— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- projecthospitality.org
Disclosure history (7)newest first
- New Hampshire State AGas victim2025-05-12
Project Hospitality Inc., a healthcare and community services non-profit, notified the NH Attorney General of a cybersecurity incident first detected on July 8, 2024. An unauthorized third party accessed network files containing sensitive personal information. One NH resident was affected. Notifications began May 7, 2025, offering credit monitoring.
- Massachusetts State AGas victim2025-05-07
Project Hospitality Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-05-07. 9 Massachusetts residents were affected.
- Vermont State AGas victim2025-05-07
Project Hospitality Inc. notified consumers of a data breach detected on July 8, 2024, where an unauthorized third party accessed sensitive personal information including names, financial account numbers, and access information. The company engaged forensic investigators and data mining vendors to assess the scope. Affected individuals were offered 12 months of credit monitoring services.
- Indiana State AGas victim2025-05-07
Project Hospitality Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-07-02 and was reported on 2025-05-07. 4 Indiana residents were affected. 89,476 individuals affected in total.
- Montana State AGas victim2024-11-04
Project Hospitality Inc notified Montana residents of a July 8, 2024 data breach where an unauthorized third party accessed sensitive personal information including names, SSNs, DOBs, and medical diagnosis/treatment data. The company engaged forensic investigators, enhanced security monitoring, and offered 12 months of credit monitoring services.
- NEW YORKHHS OCRas victim2024-09-04
Project Hospitality (NY) reported to HHS on 2024-09-04 a ransomware attack (Hacking/IT Incident) affecting 42,432 individuals. PHI on network servers was compromised, including names, addresses, dates of birth, Social Security numbers, diagnoses/conditions, and other treatment information. The CE notified HHS, affected individuals, and the media. In response, the CE provided credit monitoring services and implemented additional administrative, technical, and security safeguards.
- GLOBALLeak Siteas victim2024-09-02
Project Hospitality