Health Quest Systems, Inc. experienced a phishing attack beginning in July 2018, in which employees were tricked into disclosing email account credentials to an unauthorized party. The incident was fully investigated by November 2019. Potentially exposed data includes names, SSNs, driver's license numbers, passport numbers, financial account information, health insurance, and clinical information. HQ secured affected accounts, engaged a cybersecurity firm, and offered Experian credit monitoring to affected individuals.