Community Health Plan of Washington
ent_9690a8334dbb22b3e07a4d2e
Disclosures
6
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
381,504
nationwide · HHS OCR WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Community Health Plan of Washington
- Normalized
- community health plan of washington— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- New Hampshire State AGas victim2017-01-03
Community Health Plan of Washington (CHPW) notified the NH AG of a breach affecting 2 NH residents. Unauthorized access occurred Jan 16, 2016, via a vulnerability in third-party provider Transactions Application Group (NTT Data). Data accessed: names, SSNs, DOBs, health claims coding. Discovered Nov 7, 2016. Notified Dec 21, 2016. FBI engaged; credit monitoring offered.
- WASHINGTONHHS OCRas victim2017-01-03
Community Health Plan of Washington reported to HHS on 2017-01-03 a ransomware incident at a business associate, Summit Reinsurance, affecting 1,375 individuals. The breach, discovered on November 3, 2016, occurred on a network server and compromised protected health information including names, addresses, dates of birth, provider names, and health insurance claim information.
- Montana State AGas victim2016-12-29
Community Health Plan of Washington (CHPW) disclosed a data breach affecting member records stored by a third-party technology services provider. Unauthorized access occurred on January 16, 2016, and was discovered on November 7, 2016. Affected data included names, addresses, DOBs, SSNs, and healthcare claims coding. CHPW engaged forensic investigators, notified the FBI and state regulators, and offered 12 months of credit monitoring.
- Massachusetts State AGas victim2016-12-25
Community Health Plan of Washington reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2016-12-25. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- Washington State AGas victim2016-12-21
Community Health Plan of Washington (CHPW) notified the Washington AG that unauthorized access occurred on Jan 16, 2016, affecting 353,388 residents. CHPW learned of the incident on Nov 7, 2016, involving records stored by third-party provider Transactions Application Group, Inc. (NTT Data). Data accessed included names, addresses, DOBs, SSNs, and health claims. CHPW engaged forensics, notified the FBI, and offered 12 months of credit monitoring.
- WASHINGTONHHS OCRas victim2016-12-21
Community Health Plan of Washington reported to HHS on 2016-12-21 a Hacking/IT Incident affecting 381,504 individuals. Breached information located on Network Server, Other. Business associate Transactions Application Group, Inc. failed to properly secure a port on an FTP server, resulting in unauthorized access to ePHI including names, addresses, DOBs, SSNs, and claims coding.