Capitol Administrators, Inc
ent_d97aff0e720b12b423d4c7b7
Disclosures
2
HHS OCR · State AG · 1 jurisdiction
Incidents
1
filings grouped by incident
Max affected reported
1,733
as filed · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Capitol Administrators, Inc
- Normalized
- capitol administrators— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- CALIFORNIAHHS OCRas victim2018-05-11
Capitol Administrators, Inc. (a Business Associate in CA) reported to HHS on 2018-05-11 a Hacking/IT Incident affecting 1,733 individuals. An external third party accessed employees' email accounts via a suspected phishing incident, compromising demographic and clinical PHI. The BA notified client health plans, HHS, affected individuals, and media, and offered free credit monitoring. Remediation included password changes, MFA implementation, blocking foreign IP addresses, and enhanced phishing training. Breached information located on Email.
- 🐻California State AGas victim2018-05-11
Capitol Administrators, Inc. notified the California Attorney General's Office of a phishing incident occurring between January 7 and January 24, 2018. An unauthorized individual accessed emails and attachments containing plan participants' names and personal/medical data. Capitol engaged forensic investigators, secured accounts, implemented MFA, and provided one year of Kroll identity monitoring to affected individuals.