Western Washington Medical Group
ent_827d2e41502d6c41e5a41bb2
Disclosures
4
State AG · HHS OCR · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
334,360
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Western Washington Medical Group
- Normalized
- western washington medical— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🦬Montana State AGas victim2023-11-08
Western Washington Medical Group reported a data breach to the Montana Attorney General. The breach was reported on 2023-11-08. The breach occurred on 8/26/2023. 677 Montana residents were affected.
- 🌲Washington State AGas victim2023-11-08
Western Washington Medical Group, a health sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2023-09-25 and filed notice on 2023-11-08. 334,360 Washington residents were affected. 44 days elapsed between awareness and notification. 80 days to identify the breach. 0 days to contain the breach.
- 🐻California State AGas victim2023-11-08
Western Washington Medical Group experienced a network security incident on August 26, 2023, involving unauthorized access to its network environment. The breach window is identified as July 7, 2023, to August 26, 2023. Affected data may include names, addresses, Social Security numbers, dates of birth, medical record numbers, health insurance policy numbers, and medical history. The organization contained the incident by shutting off network access and engaged third-party forensic investigators. Complimentary identity monitoring services were offered to affected individuals.
- WASHINGTONHHS OCRas victim2018-01-12
Western Washington Medical Group Inc. reported to HHS on 2018-01-12 a Improper Disposal affecting 842 individuals. Breached information located on Paper/Films. A janitorial service comingled shredded PHI with regular trash, exposing patient names, addresses, birthdates, and medical data. The entity provided breach notification, identity theft protection, and retrained staff.