Skip to content

LifeLong Medical Care

Disclosed Aug 25, 20215 years ago115,448 affectedConfirmed

Official notice

The covered entity (CE), LifeLong Medical Care, reported that its business associate (BA) was the victim of a ransomware attack that compromised the protected health information (PHI) of 115,448 individuals. The PHI involved included names, dates of birth, Social Security numbers, financial information, diagnoses/conditions, lab results, medications prescribed, and other treatment information. The CE notified HHS, affected individuals, the media, and provided affected individuals with complimentary credit monitoring services. In response to the breach, the CE strengthened its administrative and security safeguards. OCR provided the CE with technical assistance regarding the HIPAA Breach Notification Rule.

What is known

People affected115,448 (as reported to HHS)
DisclosedAug 25, 2021
DiscoveredNov 24, 2020
HappenedNov 24, 2020
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
California Attorney General breach notice: LifeLong Medical Careoag.ca.gov · Official notice
Oregon DOJ breach notice: Lifelong Medical Carejustice.oregon.gov · Official notice
HHS OCR breach report (archive, resolved): LifeLong Medical Care (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalAug 25, 2021115,448
California AGresidents of CAAug 27, 2021
Oregon DOJresidents of ORSep 7, 2021

Other breaches at LifeLong Medical Care

BreachAffected
Disclosed Jan 14, 2026Jan 148 months agoInsider70K
History of this record
  • 2026-09-25 · attack: unknown to hacking · backfill source
  • 2026-09-25 · data_types: [] to ["names","health"] · backfill source
  • 2026-09-25 · records_basis: empty to hhs · backfill source
  • 2026-09-25 · records: empty to 115448 · backfill source
  • 2026-09-25 · disclosed: 2021-08-27 to 2021-08-25 · backfill source
  • 2026-09-25 · summary: empty to The covered entity (CE), LifeLong Medical Care, reported that its business associate (BA) was the victim of a ransomware attack that compromised the protected health information (PHI) of 115,448 individuals. The PHI involved included names, · backfill source
  • 2026-09-25 · discovered: empty to 2020-11-24 · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (California AG), confirmed by California AG. Record counts are as reported. Not legal advice.

Everything about LifeLong Medical Care

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.