The Harris Center for Mental Health and IDD
ent_e085521368987c980998ee03
Disclosures
11
State AG · Leak Site · HHS OCR · 8 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
599,367
nationwide · State AG ME
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- The Harris Center for Mental Health and IDD
- Normalized
- the harris center for mental health and idd— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- theharriscenter.org
Disclosure history (11)newest first
- Vermont State AGas victim2024-04-12
The Harris Center for Mental Health and IDD issued a data breach notice on April 12, 2024. The incident involved unauthorized access to consumer information including names, SSNs, and financial account numbers. The organization is offering 12 months of credit monitoring services. A specific count of 2 Rhode Island residents was noted; total affected count is not explicitly stated in the provided text.
- Massachusetts State AGas victim2024-04-12
The Harris Center for Mental Health reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-04-12. 18 Massachusetts residents were affected.
- GLOBALLeak Siteas victim2024-04-11
- Illinois State AGas victim2024-04-01
THE HARRIS CENTER FOR MENTAL HEALTH AND IDD filed a data-breach notice with the Illinois Attorney General in April 2024 (case 24-04-020). The register records the breach as discovered on November 6, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- TEXASHHS OCRas victim2024-01-05
The Harris Center for Mental Health and IDD reported to HHS on 2024-01-05 a Hacking/IT Incident affecting 545,001 individuals. Breached information located on Network Server. The incident involved a ransomware attack encrypting PHI including names, SSNs, driver's license numbers, diagnoses, and financial data. The CE provided credit monitoring and implemented security safeguards.
- New Hampshire State AGas victim2023-09-25
The Harris Center for Mental Health and IDD reported a data security incident involving its business associate, Harris Health System. Unauthorized parties exploited a previously unknown vulnerability in MOVEit file transfer software in late May 2023. The Harris Center learned of the breach on June 23, 2023, and determined on August 9, 2023, that documents containing personal information of four New Hampshire residents were accessed. The Center notified the New Hampshire Attorney General and the affected individuals on September 25, 2023, offering 12 months of credit monitoring.
- Massachusetts State AGas victim2023-09-25
The Harris Center for Mental Health and IDD reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-09-25. 37 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2023-09-25
The Harris Center for Mental Health and IDD notified individuals of a data breach involving a third-party service provider's use of MOVEit file transfer software. Unauthorized parties exploited a previously unknown vulnerability (zero-day) in MOVEit starting late May 2023. The Harris Center learned of the compromise on June 23, 2023. The breach exposed names and other personal information. The organization offered one year of identity protection services.
- Maine State AGas victim2023-09-25
The Harris Center for Mental Health and IDD experienced an external system breach (hacking) on May 30, 2023, discovered on August 9, 2023. The incident compromised the names and Social Security Numbers of 599,367 individuals, including 8 Maine residents. The Center provided written notification and offered 12 months of identity protection services through CyEx.
- TEXASHHS OCRas victim2023-08-17
The Harris Center for Mental Health and IDD reported to HHS on 2023-08-17 a Hacking/IT Incident affecting 599,367 individuals. Breached information located on Network Server. A business associate's software application exposed PHI including names, DOB, addresses, SSNs, diagnoses, and medical record numbers. The CE provided credit monitoring and implemented security safeguards.
- Illinois State AGas victim2023-01-01
THE HARRIS CENTER FOR MENTAL HEALTH filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-662). The register records the breach as discovered on August 9, 2023. Additional entities named: MOVEIT. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.