Indian Health Council Inc.
ent_93cd2ed6dc5d84cae3e160a3
Disclosures
3
State AG · HHS OCR · 2 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
5,769
as filed · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Indian Health Council Inc.
- Normalized
- indian health council— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- 🐻California State AGas victim2020-11-20
Indian Health Council Inc. experienced a data security incident on September 22, 2020, where an unauthorized actor gained access to servers containing protected health information (PHI), including names, dates of birth, health information, and health insurance information. The organization engaged forensic investigators, implemented multi-factor authentication, and changed passwords. Affected residents of California, Kentucky, Maryland, New Mexico, New York, North Carolina, Oregon, and Rhode Island were notified.
- 🦬Montana State AGas victim2020-11-20
Indian Health Council Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2020-11-20. The breach occurred on 9/22/2020. 3 Montana residents were affected.
- CALIFORNIAHHS OCRas victim2020-11-20
Indian Health Council Inc. (CA) reported to HHS OCR on 2020-11-20 a ransomware attack affecting 5,769 individuals. Breached ePHI was located on a Network Server and included names, birthdates, health insurance information, diagnoses, and other treatment information. The CE notified HHS, affected individuals, and the media. Mitigation included a comprehensive risk analysis, risk management plan, and employee retraining on ePHI privacy and security requirements.