Jefferson Healthcare
ent_69432ecf719bdb46298469cd
Disclosures
2
State AG · HHS OCR · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
2,543
nationwide · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Jefferson Healthcare
- Normalized
- jefferson healthcare— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- ENSIGN GROUP, INC— per SEC Exhibit 21 filing
Disclosure history (2)newest first
- Washington State AGas victim2021-01-11
Jefferson Healthcare, a public hospital district in Washington, disclosed a phishing incident where an employee's email credentials were compromised. Unauthorized access occurred from Nov 9-12, 2020. Data exposed included PHI, SSNs, names, DOBs, and financial info for ~2,543 individuals (2,496 WA residents). Notifications were sent Jan 11, 2021, offering credit monitoring.
- WASHINGTONHHS OCRas victim2021-01-11
Jefferson Healthcare (WA) reported to HHS on 2021-01-11 a Hacking/IT Incident affecting 2,543 individuals. An employee was the victim of an email phishing attack that compromised ePHI including names, addresses, dates of birth, driver's license numbers, Social Security numbers, financial information, claims information, diagnoses, lab results, and medications. Breached information was located in Email. The CE notified HHS, affected individuals, the media, and provided substitute notice on its website, and implemented additional technical safeguards and staff retraining.