Northern Colorado Rehabilitation Hospital
ent_e37914713277032529211f7d
Massachusetts publishes one register entry per notified resident. Northern Colorado Rehabilitation Hospital filed 3 breach notifications with the Massachusetts OCA, 3 of them covering a single resident. The register records who filed and how many residents — not where the breach occurred.
Disclosures
9
State AG · HHS OCR · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,477
nationwide · HHS OCR UT
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Northern Colorado Rehabilitation Hospital
- Normalized
- northern colorado rehabilitation hospital— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- Massachusetts State AGas victim2024-03-30
Northern Colorado Rehabilitation reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-03-30. 1 Massachusetts residents were affected.
- Massachusetts State AGas victim2024-03-30
Northern Utah Rehabilitation Hospital reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-03-30. 1 Massachusetts residents were affected.
- New Hampshire State AGas victim2024-03-29
Northern Colorado Rehabilitation Hospital notified the NH Attorney General of a data breach affecting 1 NH resident. Unauthorized access occurred Jan 16–Feb 4, 2024. Patient PHI and basic identity info were accessed. The hospital isolated systems, engaged forensic investigators, and notified law enforcement. Affected individuals received credit monitoring services.
- Montana State AGas victim2024-03-29
Northern Utah Rehabilitation Hospital notified Montana residents of a data security incident. Unauthorized access occurred between Jan 16 and Feb 4, 2024. Patient information, including names and potentially other PII, was accessed. The company engaged third-party cybersecurity firms and law enforcement, and is offering one year of credit monitoring.
- UTAHHHS OCRas victim2024-03-29
Northern Utah Rehabilitation Hospital reported to HHS on 2024-03-29 a Hacking/IT Incident affecting 3477 individuals. Breached information located on Network Server. The incident involved ransomware encrypting PHI including names, DOB, SSN, driver's license, addresses, claims, medications, and diagnoses. The entity offered credit monitoring and implemented security safeguards.
- COLORADOHHS OCRas victim2024-03-29
Northern Colorado Rehabilitation Hospital (CO) reported to HHS OCR on 2024-03-29 a ransomware incident affecting PHI of 885 individuals stored on a network server. PHI involved included names, dates of birth, Social Security and drivers' license numbers, addresses, claims information, medications, diagnoses and conditions, and other treatment information. In response, the CE notified HHS, affected individuals, and the media; posted substitute notice; offered free credit monitoring; implemented additional safeguards; and retrained staff.
- Montana State AGas victim2024-03-29
Northern Colorado Rehabilitation Hospital notified Montana residents of a data breach where unauthorized access occurred between Jan 16 and Feb 4, 2024. Patient PII was accessed. The hospital engaged third-party forensics and law enforcement, offering credit monitoring.
- Illinois State AGas victim2024-03-01
NORTHERN COLORADO REHABILITATION HOSPITAL filed a data-breach notice with the Illinois Attorney General in March 2024 (case 24-03-120). The register records the breach as discovered on January 16, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2019-04-26
Northern Colorado Rehabilitaion Hospital reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-04-26. 1 Massachusetts residents were affected. The report records the breach type as electronic.