Grand River Medical Group
ent_b5cc91493f4e84105c13f6f4
Disclosures
3
HHS OCR · State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
37,858
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Grand River Medical Group
- Normalized
- grand river medical— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- IOWAHHS OCRas victim2021-02-12
Grand River Medical Group (Iowa) reported to HHS on 2021-02-12 a Hacking/IT Incident (email phishing) affecting 37,423 individuals. An employee was the victim of a phishing attack that compromised PHI including names, addresses, Social Security numbers, dates of birth, claims information, medications, and other treatment information. No business associate was involved. The CE notified HHS, individuals, and media; offered credit monitoring; strengthened technical safeguards; and retrained staff on email security. OCR provided HIPAA Security Rule technical assistance.
- 🦞Maine State AGas victim2021-02-12
Healthcare provider Grand River Medical Group, P.C. experienced an external system breach between October 19 and October 22, 2020. The incident was discovered on October 22, 2020, with potential data compromise confirmed by a forensic firm on December 15, 2020. The breach affected 37,858 individuals, who were notified in February 2021. The company offered 12 months of identity protection services to those affected.
- 🦬Montana State AGas victim2021-02-08
Grand River Medical Group, P.C. reported a data breach to the Montana Attorney General. The breach was reported on 2021-02-08. The breach occurred from 10/19/2020 to 10/22/2020. 3 Montana residents were affected.