[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3aq6alh7alm5q":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":35,"seoTitle":36,"seoTitleEn":37,"seoDescription":36,"seoDescriptionEn":38,"logoUrl":39,"isVerified":4,"isSensitive":4,"isSpamList":40,"isMalware":40,"company":41},"6a714d11144ee5182c8fcacd","HealthcareServicesGroup2024","Healthcare Services Group 2024 Data Breach","healthcare-services-group-2024","hcsgcorp.com","2024-09-27T00:00:00.000Z","2026-08-04T02:23:13.366Z","Third party breach","https:\u002F\u002Fagportal-s3bucket.s3.amazonaws.com\u002Fdatabreach\u002FBreachA34460.pdf",[14,16],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage",624496,"known",null,"people","High",[23,24,25,26,27,28,29,30,31,32,33,34],"Names","Social security numbers","Dates of birth","Driver's license numbers","State identification numbers","Financial account information","Health insurance information","Medical information","Account credentials","Biometric identifiers","Government issued IDs","Passport numbers","\u003Cp>\u003Cstrong>The 2024 Healthcare Services Group data breach\u003C\u002Fstrong> was a security incident in which an unauthorized party may have accessed and copied files from the company's computer systems. The Texas Attorney General record reports 624,496 affected people nationwide.\u003C\u002Fp>\u003Cp>Healthcare Services Group (HCSG) provides environmental, dining, and nutrition services to healthcare and senior-living organizations. The affected files contained personal information and, for some people, health and insurance information.\u003C\u002Fp>\u003Ch2>How did the Healthcare Services Group data breach happen?\u003C\u002Fh2>\u003Cp>According to the company's official notice, an unauthorized party may have accessed and copied files from HCSG systems between September 27 and October 3, 2024. The company learned of the potential unauthorized access on October 7, 2024.\u003C\u002Fp>\u003Cp>HCSG did not disclose the technical means of access. Unverified details about the attack method or responsible party are therefore not included in the catalog record.\u003C\u002Fp>\u003Ch2>When was the incident discovered?\u003C\u002Fh2>\u003Cp>The company notice identifies October 7, 2024 as the date HCSG learned of the event. It then conducted an extensive review to determine what the files contained and whose information was involved.\u003C\u002Fp>\u003Cp>The Texas regulator record contains June 3, 2025 in a separate discovery field, but the company explicitly says it learned of the event in 2024. The later date is therefore not represented as the access date or initial detection date.\u003C\u002Fp>\u003Ch2>What information may have been affected?\u003C\u002Fh2>\u003Cp>The official notice lists names, Social Security numbers, dates of birth, driver's-license and state-identification numbers, financial account information, health-insurance information, medical information, account access credentials, biometric identifiers, government identification numbers, and passport numbers.\u003C\u002Fp>\u003Cp>The affected data varied by individual. This does not mean every listed field was present in every person's files.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The Texas Attorney General reports 624,496 affected people nationwide, including 82,280 Texas residents. The Washington regulator filing separately reports 7,745 affected residents of that state.\u003C\u002Fp>\u003Ch2>What risks can this information create?\u003C\u002Fh2>\u003Cp>Identity, financial, and account-access information can support identity theft, fraudulent account applications, or account-takeover attempts. Health and insurance details can make targeted messages appear to refer to a genuine service or payment relationship.\u003C\u002Fp>\u003Cp>For an unexpected message claiming to come from HCSG, a care facility, a health insurer, or a bank, use the organization's official contact channel instead of following a supplied link. Accurate health or employment details do not prove the sender is authorized.\u003C\u002Fp>\u003Ch2>How did Healthcare Services Group respond?\u003C\u002Fh2>\u003Cp>HCSG secured its systems, investigated, notified federal law enforcement, and said it implemented additional safeguards and employee training. It offered affected people complimentary credit monitoring and identity-restoration services through Experian.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients can enroll in the monitoring service within the period stated in their individual letter and review credit reports, financial accounts, and health-insurance explanations for unfamiliar activity.\u003C\u002Fp>\u003Cp>If an unfamiliar transaction, new account, or healthcare service appears, contact the relevant organization directly. Do not share a password, verification code, or payment information in response to an unexpected call or message.\u003C\u002Fp>","","Healthcare Services Group Data Breach (624.5 Thousand People Affected)","The Healthcare Services Group data breach affected 624,496 people and may have exposed identity, health, and financial information.","\u002Fuploads\u002Flogo\u002Fhealthcare-services-group.png",false,{"name":42,"sector":43,"country":44,"website":45,"websiteArchiveUrl":36,"websiteStatus":36,"websiteCheckedAt":19},"Healthcare Services Group","Healthcare Services","United States","https:\u002F\u002Fwww.hcsgcorp.com\u002F"]