Saint Luke's Foundation
ent_f62d717a17223cf39d7bef78
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
360,212
nationwide · HHS OCR MO
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Saint Luke's Foundation
- Normalized
- saint luke s— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- California State AGas victim2020-08-20
Saint Luke's Foundation notified individuals that a third-party vendor, Blackbaud, experienced a ransomware attack between Feb 7 and May 20, 2020. The cybercriminal exfiltrated a backup file containing patient demographic data (name, address, phone, email, DOB) and limited medical information (date of service, department of care). No SSNs or financial data were compromised. Blackbaud contained the incident and is monitoring for misuse.
- MISSOURIHHS OCRas victim2020-08-20
Saint Luke's Foundation (MO) reported to HHS on 2020-08-20 that its business associate, Blackbaud, Inc., experienced a ransomware attack affecting the ePHI of approximately 360,212 patients. Exposed information included names, addresses, dates of birth, telephone numbers, email addresses, and treatment information. Breached information located on a Network Server. The CE notified HHS, affected individuals, the media, and provided substitute notice.
- Montana State AGas victim2020-08-20
Saint Luke's Foundation notified Montana AG of a ransomware incident involving third-party vendor Blackbaud. Attack occurred Feb 7 - May 20, 2020. Compromised data included patient demographics, contact info, DOB, and limited medical info. No SSN or financial data accessed. Blackbaud contained the incident and deleted the backup file.
Supply-chain cascadesreviewed and confirmed
- Saint Luke's Foundation’s filing is one of at least 175 in the BLACKBAUD, INC. supply-chain incident (2020).