Saint Alphonsus Health System
ent_bd8d4e9aff79144bd1b5ab37
Disclosures
3
HHS OCR · State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
134,906
as filed · HHS OCR ID
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Saint Alphonsus Health System
- Normalized
- saint alphonsus health system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- IDAHOHHS OCRas victim2021-03-04
Saint Alphonsus Health System (ID) reported to HHS on 2021-03-04 a Hacking/IT Incident (email phishing) affecting 134,906 individuals. An employee was the victim of a phishing scheme exposing ePHI including names, addresses, dates of birth, SSNs, health insurance, claims and financial information, lab results, and medications. Breached information located in Email systems. No business associate was involved. OCR provided technical assistance; the CE retrained staff and implemented additional safeguards.
- 🐻California State AGas victim2021-03-04
Saint Alphonsus Health System reported a phishing incident affecting employee email accounts between January 4 and January 6, 2021. Unauthorized access may have exposed patient data including names, addresses, dates of birth, and medical records. The company secured the account, retrained staff, and engaged Kroll to provide one year of free identity monitoring services to affected individuals.
- 🦫Oregon State AGas victim2021-03-04
Saint Alphonsus Health System reported a data breach to the Oregon Attorney General. The breach was reported on 2021-03-04. The breach occurred during 1/4/2021 - 1/6/2021. The breach was discovered on 1/6/2021. 134,906 individuals were affected. Notice was sent on 3/4/2021.