Centinela Freeman Emergency Medical Associates: Data breach at billing provider La Perouse impacted patients of 7 hospital groups

Centinela Freeman Emergency Medical Associates: Data breach at billing provider La Perouse impacted patients of 7 hospital groups

Las Vegas Medical Billing Firm Suffers Third-Party Data Breach Affecting Seven Hospital Groups

In July 2025, Las Vegas-based revenue cycle management company La Perouse disclosed a data breach involving a third-party billing platform, exposing sensitive personal and healthcare information of patients treated at seven major U.S. hospital groups. The company detected unauthorized access on July 8, 2025, and promptly secured its systems while launching a forensic investigation with external cybersecurity experts.

The breach did not compromise La Perouse’s internal network, but hackers accessed and exfiltrated files from the third-party platform. The exact duration of the unauthorized access remains undisclosed. After reviewing the impacted data, La Perouse identified affected individuals patients of Beach Emergency Medical Associates, Centinela Freeman Emergency Medical Associates, Chino Emergency Medical Associates, Hollywood Presbyterian Emergency Medical Associates, Montclair Emergency Medical Associates, Tarzana Emergency Medical Associates, and Temecula Valley Hospitalist Medical Group and began notifying them via mail.

The stolen data included names, dates of birth, Social Security numbers, driver’s license/state ID numbers, medical record details, health insurance information, and other sensitive records. While the total number of affected individuals was not revealed, La Perouse reported the incident to the California Attorney General’s Office on May 28, 2025, and completed its investigation by spring 2026.

In response, the company implemented enhanced security measures with its third-party vendor and offered 12 months of free credit monitoring and identity theft restoration services to impacted individuals. The breach underscores the risks of third-party vulnerabilities in healthcare data security.

Source: https://www.teiss.co.uk/news/news-scroller/data-breach-at-billing-provider-la-perouse-impacted-patients-of-7-hospital-groups-17609

Emergent Medical Associates cybersecurity rating report: https://www.rankiteo.com/company/emergent-medical-associates

"id": "EME1780705761",
"linkid": "emergent-medical-associates",
"type": "Breach",
"date": "7/2025",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare',
                        'location': 'Las Vegas, USA',
                        'name': 'La Perouse',
                        'type': 'Revenue cycle management company'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Beach Emergency Medical Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Centinela Freeman Emergency Medical '
                                'Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Chino Emergency Medical Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Hollywood Presbyterian Emergency Medical '
                                'Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Montclair Emergency Medical Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Tarzana Emergency Medical Associates',
                        'type': 'Hospital group'},
                       {'customers_affected': 'Patients',
                        'industry': 'Healthcare',
                        'location': 'USA',
                        'name': 'Temecula Valley Hospitalist Medical Group',
                        'type': 'Hospital group'}],
 'attack_vector': 'Third-party platform compromise',
 'customer_advisories': '12 months of free credit monitoring and identity '
                        'theft restoration services offered to impacted '
                        'individuals',
 'data_breach': {'data_exfiltration': 'Yes',
                 'personally_identifiable_information': 'Yes',
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Names',
                                              'Dates of birth',
                                              'Social Security numbers',
                                              'Driver’s license/state ID '
                                              'numbers',
                                              'Medical record details',
                                              'Health insurance information']},
 'date_detected': '2025-07-08',
 'date_publicly_disclosed': '2025-07',
 'date_resolved': '2026-spring',
 'description': 'In July 2025, Las Vegas-based revenue cycle management '
                'company La Perouse disclosed a data breach involving a '
                'third-party billing platform, exposing sensitive personal and '
                'healthcare information of patients treated at seven major '
                'U.S. hospital groups. The breach did not compromise La '
                'Perouse’s internal network, but hackers accessed and '
                'exfiltrated files from the third-party platform. The stolen '
                'data included names, dates of birth, Social Security numbers, '
                'driver’s license/state ID numbers, medical record details, '
                'health insurance information, and other sensitive records.',
 'impact': {'data_compromised': 'Sensitive personal and healthcare information',
            'identity_theft_risk': 'High',
            'systems_affected': 'Third-party billing platform'},
 'investigation_status': 'Completed',
 'lessons_learned': 'The breach underscores the risks of third-party '
                    'vulnerabilities in healthcare data security.',
 'post_incident_analysis': {'corrective_actions': 'Enhanced security measures '
                                                  'with third-party vendor',
                            'root_causes': 'Third-party platform '
                                           'vulnerability'},
 'references': [{'source': 'California Attorney General’s Office'}],
 'regulatory_compliance': {'regulatory_notifications': ['Reported to '
                                                        'California Attorney '
                                                        'General’s Office on '
                                                        '2025-05-28']},
 'response': {'communication_strategy': 'Notified affected individuals via '
                                        'mail',
              'containment_measures': 'Secured systems',
              'incident_response_plan_activated': 'Yes',
              'remediation_measures': 'Enhanced security measures with '
                                      'third-party vendor',
              'third_party_assistance': 'External cybersecurity experts'},
 'title': 'Las Vegas Medical Billing Firm Suffers Third-Party Data Breach '
          'Affecting Seven Hospital Groups',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.