Skip to content

Kaye-Smith Enterprises

Disclosed Aug 29, 20224 years ago2,857 affectedConfirmed

Official notice

The business associate (BA), Kaye-Smith Enterprises, reported that it was the victim of a ransomware attack affecting the protected health information (PHI) of 2,857 individuals. The PHI involved included, names, addresses, medical record numbers, and health insurance information. The BA notified HHS, and the covered entity notified the affected individuals and the media. In response to the breach, the BA implemented additional administrative and technical safeguards, retrained its workforce members, and provided complimentary credit monitoring services to affected individuals.

What is known

People affected2,857 (as reported to HHS)
DisclosedAug 29, 2022
HappenedMay 18, 2022
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
California Attorney General breach notice: Kaye-Smith Enterprisesoag.ca.gov · Official notice
HHS OCR breach report (archive, resolved): Kaye-Smith Enterprises (Business Associate, WA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
California AGresidents of CAAug 29, 2022
HHS archivetotalSep 26, 20222,857
History of this record
  • 2026-09-25 · sector: other to health · backfill source
  • 2026-09-25 · attack: unknown to hacking · backfill source
  • 2026-09-25 · data_types: [] to ["names","health"] · backfill source
  • 2026-09-25 · records_basis: empty to hhs · backfill source
  • 2026-09-25 · records: empty to 2857 · backfill source
  • 2026-09-25 · summary: empty to The business associate (BA), Kaye-Smith Enterprises, reported that it was the victim of a ransomware attack affecting the protected health information (PHI) of 2,857 individuals. The PHI involved included, names, addresses, medical record n · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (California AG), confirmed by California AG. Record counts are as reported. Not legal advice.

Everything about Kaye-Smith Enterprises

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.