CRG Lynwood, LLC
ent_bc897e09af30028253aaac0f
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
6,566
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CRG Lynwood, LLC
- Normalized
- crg lynwood— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- ⛰️New Hampshire State AGas victim2024-06-10
CRG Lynwood, LLC d/b/a Lynwood Manor notified the NH AG of a cybersecurity incident involving its third-party administrator, Excelerate Healthcare Services (EHS). The incident occurred in July 2021, but Lynwood did not learn of the potential impact on patient information until September 2022. The breach exposed PII, including names and addresses. Lynwood engaged forensic investigators, deployed monitoring tools, and offered credit monitoring services to affected individuals.
- 🦞Maine State AGas victim2024-06-10
CRG Lynwood, LLC (d/b/a Lynwood Manor), a healthcare entity based in Michigan, reported an external system breach (hacking) occurring on July 12, 2021. The incident compromised the personal information of 6,566 individuals, including 1 Maine resident. Acquired data included names combined with driver's license numbers. The entity notified affected individuals in writing on June 7, 2024, and offered identity theft protection services.
- MIHHS OCRas victim2024-06-10
CRG Lynwood, LLC d/b/a Lynwood Manor (a Michigan healthcare provider) reported to HHS OCR that its business associate experienced a ransomware attack affecting PHI of 6,566 individuals. Affected data included names, dates of birth, driver's license numbers, Social Security numbers, claims and financial information, medications, and other treatment information stored on a network server. The covered entity notified HHS, affected individuals, and the media; provided substitute notice and complimentary credit monitoring; and implemented additional administrative, technical, and security safeguards plus workforce retraining.