The California Office of the Attorney General reported that Kaiser Permanente experienced a data breach on April 6, 2012, due to an employee inadvertently sending a report to a non-Kaiser Permanente email address. The reported date of the incident is April 16, 2012. The incident potentially affected patient identifiable information, although the number of individuals affected is unknown.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-23010
TPRM report: https://www.rankiteo.com/company/kaiser-permanente
"id": "kai529072625",
"linkid": "kaiser-permanente",
"type": "Breach",
"date": "4/2012",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare',
'location': 'California',
'name': 'Kaiser Permanente',
'type': 'Healthcare Provider'}],
'attack_vector': 'Human Error',
'data_breach': {'type_of_data_compromised': 'Patient Identifiable '
'Information'},
'date_detected': '2012-04-16',
'description': 'An employee inadvertently sent a report to a non-Kaiser '
'Permanente email address, potentially affecting patient '
'identifiable information.',
'impact': {'data_compromised': 'Patient Identifiable Information'},
'references': [{'source': 'California Office of the Attorney General'}],
'title': 'Kaiser Permanente Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Email Misdirection'}