California-based Legacy Post Acute Care experienced data breach.
In September, it discovered that an unauthorized party had accessed several employee email accounts during the two-month period.
The email accounts contained patient names, Social Security numbers, treatment information, health insurance information, financial information, prescription information, and patient account and medical record numbers.
TPRM report: https://scoringcyber.rankiteo.com/company/lgs-legacy-care
"id": "leg11891222",
"linkid": "lgs-legacy-care",
"type": "Breach",
"date": "09/2022",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare',
'location': 'California',
'name': 'Legacy Post Acute Care',
'type': 'Healthcare Provider'}],
'attack_vector': 'Email Account Compromise',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Patient Names',
'Social Security Numbers',
'Treatment Information',
'Health Insurance Information',
'Financial Information',
'Prescription Information',
'Patient Account Numbers',
'Medical Record Numbers']},
'date_detected': 'September 2023',
'description': 'California-based Legacy Post Acute Care experienced a data '
'breach where an unauthorized party accessed several employee '
'email accounts over a two-month period. The compromised data '
'included patient names, Social Security numbers, treatment '
'information, health insurance information, financial '
'information, prescription information, and patient account '
'and medical record numbers.',
'impact': {'data_compromised': ['Patient Names',
'Social Security Numbers',
'Treatment Information',
'Health Insurance Information',
'Financial Information',
'Prescription Information',
'Patient Account Numbers',
'Medical Record Numbers'],
'systems_affected': 'Email Accounts'},
'initial_access_broker': {'entry_point': 'Email Accounts'},
'references': [{'source': 'Cyber Incident Description'}],
'title': 'Data Breach at Legacy Post Acute Care',
'type': 'Data Breach',
'vulnerability_exploited': 'Unauthorized Access to Email Accounts'}