Health Plan of San Joaquin (HPSJ)
ent_574f56e8e1442fec3f945074
Disclosures
4
State AG · HHS OCR · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
420,433
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Health Plan of San Joaquin (HPSJ)
- Normalized
- health plan of san joaquin hpsj— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🦬Montana State AGas victim2021-05-18
Health Plan of San Jaoquin reported a data breach to the Montana Attorney General. The breach was reported on 2021-05-18. The breach occurred from 9/26/2020 to 10/12/2020. 55 Montana residents were affected.
- 🦞Maine State AGas victim2021-05-18
Health Plan of San Joaquin (HPSJ) experienced a hacking incident from September 26 to October 12, 2020, discovered on October 23, 2020. The breach affected 420,433 individuals, compromising names and Social Security numbers. HPSJ notified consumers on May 18, 2021, and offered 12 months of identity theft protection services through Equifax.
- 🐻California State AGas victim2021-05-18
Health Plan of San Joaquin (HPSJ) notified California residents of a data breach involving unauthorized access to employee email accounts. The incident occurred between September 26, 2020, and October 12, 2020, following a phishing attack. Affected data included names, SSNs, DOBs, and health information. HPSJ reset passwords, engaged forensic specialists, and offered 12 months of free identity monitoring via Equifax.
- CALIFORNIAHHS OCRas victim2020-12-21
Health Plan of San Joaquin reported to HHS on 2020-12-21 a Hacking/IT Incident affecting 418,842 individuals. Breached information located on Email. Employees were victims of an email phishing scheme exposing ePHI including names, SSNs, driver's license numbers, health insurance, claims, financial info, DOB, lab results, and prescription data. The CE notified HHS, individuals, media, provided substitute notice, offered credit monitoring, and updated email access protocols.