Barlow Respiratory Hospital
ent_d83111ba9bc3015ae963d765
Disclosures
6
State AG · Leak Site · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
10,761
nationwide · HHS OCR CA
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Barlow Respiratory Hospital
- Normalized
- barlow respiratory hospital— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- California State AGas victim2022-03-04
Barlow Respiratory Hospital notified affected individuals of a data breach where an unauthorized party accessed systems from August 21 to September 1, 2021. The incident, first identified on August 27, 2021, involved the exfiltration of files containing names, SSNs, driver's license numbers, financial account info, online credentials, and medical/health insurance information for current and former employees and physicians. The hospital engaged forensic investigators, notified law enforcement, and offered 12 months of credit monitoring.
- GLOBALLeak Siteas victim2022-01-06
- Massachusetts State AGas victim2021-12-30
Barlow Respiratory Hospital reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-12-30. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2021-12-30
Barlow Respiratory Hospital notified the New Hampshire Attorney General of a data security incident affecting one NH resident. Unauthorized access occurred between August 21 and September 1, 2021. The actor exfiltrated files containing PII (SSN, DL) and PHI. Discovered August 27, 2021. Notification sent December 30, 2021.
- CALIFORNIAHHS OCRas victim2021-12-30
Barlow Respiratory Hospital (CA) reported to HHS on 2021-12-30 a ransomware attack affecting 10,761 individuals. Breached PHI resided on a Network Server and included names, addresses, dates of birth, driver's license numbers, Social Security numbers, medical record numbers, diagnoses, financial information, and health insurance/treatment information. The CE notified HHS, affected individuals, and the media, offered credit monitoring, and implemented additional technical safeguards. OCR provided technical assistance under the HIPAA Rules during the investigation.
- California State AGas victim2021-12-30
Barlow Respiratory Hospital notified patients of an incident where an unauthorized party accessed systems from August 21 to September 1, 2021. The incident was identified on August 27, 2021. The attacker removed files containing patient PHI, including names, SSNs, medical records, and financial info. The hospital engaged forensic investigators, notified law enforcement, and offered credit monitoring.