US HealthCenter, Inc.
ent_f2839f19ee1d6dfdfb482e07
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,441
nationwide · HHS OCR WI
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- US HealthCenter, Inc.
- Normalized
- us healthcenter— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- Montana State AGas victim2020-07-16
US HealthCenter, Inc. notified individuals of unauthorized access to a dedicated email inbox used for the Cost Plus World Market Wellness Program. The incident, discovered April 13, 2020, involved phishing emails sent to participants, leading to the viewing and forwarding of emails containing names, DOBs, and limited health information. USHC changed passwords and migrated to Office 365 with 2FA.
- California State AGas victim2020-07-16
US HealthCenter, Inc. reported unauthorized access to a dedicated email inbox for the Cost Plus World Market Wellness Program on April 13, 2020. The attacker used the compromised account to send phishing emails and view/forward participant emails containing PHI, including names, employee numbers, dates of birth, and physician signatures. USHC changed passwords, migrated to a new secure email platform, and enabled two-factor authentication.
- WISCONSINHHS OCRas victim2020-07-16
US HealthCenter, Inc. reported to HHS on 2020-07-16 a Hacking/IT Incident affecting 1441 individuals. Breached information located on Email. An employee of its business associate was the subject of an email phishing scheme that compromised PHI including names, birthdates, addresses, diagnoses, lab results, medications, and treatment information.