Methodist Hospital of Southern California
ent_59a737b95f12aa8210b5d0a0
Disclosures
2
State AG · HHS OCR · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
39,881
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Methodist Hospital of Southern California
- Normalized
- methodist hospital of southern california— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- California State AGas victim2020-11-04
Methodist Hospital of Southern California notified patients of a data breach involving a ransomware attack on its vendor, Blackbaud Inc. The attack occurred between February and May 2020, with discovery on September 9, 2020. Patient information including names, contact details, demographics, and medical record numbers was exfiltrated. Blackbaud paid the ransom and confirmed data destruction. MHSC reported the incident to the California Department of Public Health and implemented remediation measures.
- CALIFORNIAHHS OCRas victim2020-11-04
Methodist Hospital of Southern California reported to HHS OCR on 2020-11-04 that its business associate experienced a ransomware attack affecting the ePHI of approximately 39,881 individuals. Breached information was located on a Network Server and included names, addresses, dates of birth, and treatment information. The breach involved the CE's medical foundation, which is not subject to HIPAA Rules.
Supply-chain cascadesreviewed and confirmed
- Methodist Hospital of Southern California’s filing is one of at least 175 in the BLACKBAUD, INC. supply-chain incident (2020).