Colorado Department of Human Services
ent_6a04aadac5e677ba6a34ace7
Disclosures
4
HHS OCR · 1 jurisdiction
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
12,230
nationwide · HHS OCR CO
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Colorado Department of Human Services
- Normalized
- colorado department of human— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- coloradoaps.com
Disclosure history (4)newest first
- COLORADOHHS OCRas victim2022-01-19
Colorado Department of Human Services reported to HHS on 2022-01-19 a Hacking/IT Incident affecting 6,132 individuals. Breached information located on Network Server. A business associate experienced a cyber-attack compromising PHI (names, addresses, DOB, health insurance). CE notified HHS, individuals, and media.
- COLORADOHHS OCRas victim2020-04-07
Colorado Department of Human Services, Office of Behavioral Health reported to HHS on 2020-04-07 a Unauthorized Access/Disclosure affecting 8,132 individuals. Breached information located on Network Server. Unauthorized staff members accessed ePHI including names, addresses, SSNs, and treatment data.
- COLORADOHHS OCRas victim2019-12-16
Colorado Department of Human Services reported to HHS on 2019-12-16 a Unauthorized Access/Disclosure affecting 12,230 individuals. Breached information located on Other. The covered entity mailed PHI of 12,230 individuals to the wrong recipients. The PHI involved included names, employer information, and financial information. The CE notified HHS, affected individuals, and the media. In its mitigation efforts, the CE implemented additional technical and security safeguards to better protect its PHI.
- COLORADOHHS OCRas victim2017-12-27
Colorado Department of Human Services reported to HHS on 2017-12-27 a Hacking/IT Incident affecting 639 individuals. Breached information located on Desktop Computer. An employee accessed an imposter site that downloaded malware, allowing the operator to access PHI of 639 individuals.