Company Details
covington-behavioral-health-hospital
64
1,185
62133
covingtonbh.com
0
COV_3217941
In-progress


Covington Behavioral Health Company CyberSecurity Posture
covingtonbh.comComprehensive Care with Dignity and Respect Covington Behavioral Health Hospital is a 104-bed treatment center in Covington, Louisiana, where adults and adolescents can receive comprehensive care for a wide range of mental health disorders. Care at Covington is provided at two levels: inpatient treatment and intensive outpatient programming (IOP). Covington’s inpatient program is designed to be a short-term treatment experience for individuals who need acute psychiatric care. Typical length of stay in the inpatient program is seven to 10 days. Less intensive longer-term care, which is often optimal for those who need step-down support following their inpatient experience, is available via IOP. Typical length of stay in IOP rages from four to 12 weeks. Individuals whose mental health issues are accompanied by chemical dependency, and who have been incapable of ending their substance abuse prior to starting treatment, may also complete detox at Covington before transitioning into residential treatment. Treatment techniques and therapeutic modalities that are incorporated into treatment at Covington include cognitive behavioral therapy (CBT), crisis intervention therapy, and solution-focused therapy. Each person who heals at Covington Behavioral Health will follow a personalized treatment plan that is based upon a thorough assessment of his or her needs. Depending upon those needs, an individual’s experience at Covington may involve working with psychiatrists, medical psychologists, nurses, nurse practitioners, social workers, counselors, activity therapists, and mental health technicians. Covington Behavioral Health Hospital is accredited by the Joint Commission and accepts most major insurance plans. For more information, visit www.covingtonbh.com or call (985) 893-2970.
Company Details
covington-behavioral-health-hospital
64
1,185
62133
covingtonbh.com
0
COV_3217941
In-progress
Between 750 and 799

CBH Global Score (TPRM)XXXX

Description: Acadia Health LLC, a Louisiana-based healthcare provider, experienced a data breach in 2023 that exposed the personal information of nearly 130,000 individuals, including Social Security numbers (SSNs). The breach resulted from alleged negligence in safeguarding sensitive data, leading to a proposed class-action settlement of $875,000. Affected individuals particularly those with exposed SSNs are eligible for reimbursement of up to $10,000 for documented losses, while adult subclass members can claim up to $12,500. Minors impacted by the breach will receive 10 years of identity-theft protection. The settlement also includes pro rata cash payments for other affected parties. The exposure of such highly sensitive data (SSNs) poses severe risks, including identity theft, financial fraud, and long-term reputational harm to the victims. The incident underscores critical failures in Acadia Health’s cybersecurity measures, particularly in protecting patient and employee confidentiality in the healthcare sector.


No incidents recorded for Covington Behavioral Health in 2026.
No incidents recorded for Covington Behavioral Health in 2026.
No incidents recorded for Covington Behavioral Health in 2026.
CBH cyber incidents detection timeline including parent company and subsidiaries

Comprehensive Care with Dignity and Respect Covington Behavioral Health Hospital is a 104-bed treatment center in Covington, Louisiana, where adults and adolescents can receive comprehensive care for a wide range of mental health disorders. Care at Covington is provided at two levels: inpatient treatment and intensive outpatient programming (IOP). Covington’s inpatient program is designed to be a short-term treatment experience for individuals who need acute psychiatric care. Typical length of stay in the inpatient program is seven to 10 days. Less intensive longer-term care, which is often optimal for those who need step-down support following their inpatient experience, is available via IOP. Typical length of stay in IOP rages from four to 12 weeks. Individuals whose mental health issues are accompanied by chemical dependency, and who have been incapable of ending their substance abuse prior to starting treatment, may also complete detox at Covington before transitioning into residential treatment. Treatment techniques and therapeutic modalities that are incorporated into treatment at Covington include cognitive behavioral therapy (CBT), crisis intervention therapy, and solution-focused therapy. Each person who heals at Covington Behavioral Health will follow a personalized treatment plan that is based upon a thorough assessment of his or her needs. Depending upon those needs, an individual’s experience at Covington may involve working with psychiatrists, medical psychologists, nurses, nurse practitioners, social workers, counselors, activity therapists, and mental health technicians. Covington Behavioral Health Hospital is accredited by the Joint Commission and accepts most major insurance plans. For more information, visit www.covingtonbh.com or call (985) 893-2970.


We are a private, non-profit Certified Community Behavioral Health Clinic (CCBHC) in Muskogee, Oklahoma, providing comprehensive outpatient and crisis services to individuals of all ages. We offer mental health and substance use disorder services for adults and children, including Medication Assiste

Allwell Behavioral Health Services is a private, not-for-profit provider of comprehensive community mental health services in Coshocton, Guernsey, Morgan, Muskingum, Noble and Perry counties. Allwell was created in 2016 as a merger of Six County Inc. and Thompkins Treatment Inc. While Six County of

TEXAS SUICIDE PREVENTION COLLABORATIVE is a social impact organization that supports and administers the Texas Suicide Prevention Council - a network of 140+ statewide partners, local coalitions, Military and Veteran Organizations and institutions of higher education who work together to improve su

AGENCY MISSION STATEMENT Our Mission is to provide effective quality programs for children, adolescents, and their families experiencing problems with substance abuse and/or juvenile delinquency. We provide services in Palm Beach, St. Lucie, Martin, Indian River and Okeechobee counties. We are c
In Kentucky, the state with a top-five child abuse rate, Maryhurst is transforming kids’ lives. Our work prevents abuse, restores hope, and empowers survivors. At the first sign of conflict, Maryhurst’s counseling program partners with families to strengthen relationships and protect kids’ safety.

North Shore Counseling Solutions was established to treat and serve communities North of Boston. Our practice offers a personalized approach to therapy that simultaneously reduces stress and enhances insight through focusing on one’s strengths. At NSCS our core belief is based on the principal that

All people deserve to have access to affordable mental health services. All-Desert Wellness Centers (ADWC) is a 501(c)3 non-profit low-cost provider of mental and behavioral health services focusing on the needs of individuals, children, adolescents and their families in the Coachella Valley and out
CATCH, Inc. is a not-for-profit corporation providing behavioral health and intellectual disabilities services in an area that includes portions of Center City and South Philadelphia, west of Broad Street to the Schuykill River and south of Chestnut Street to the Naval Base. Services are accessible

BASICS NW uses Applied Behavior Analysis as a means to provide effective, evidence-based behavioral health intervention services to children, adolescents, and young adults affected by autism and related disorders in Southwest Washington State and the Puget Sound Region. BASICS NW seeks to provide
.png)
Arizona Secretary of State Adrian Fontes said new legislation called the "Voters First Act" would "ensure the resilience of our democracy."
The Cybersecurity and Infrastructure Security Agency's acting director testified that CISA is “getting back on mission,” but he provided few...
How Cybersecurity Maturity Model Certification will impact manufacturing beyond defense contracts.
The National Cybersecurity Alliance created the Core Four, a set of four simple yet powerful steps anyone can follow.
Teradata Corporation recently appointed Ken Ricketts as Senior Vice President and Chief Information Security Officer, tasking him with...
The Cybersecurity and Infrastructure Security Agency's acting leader used a hearing on Wednesday to defend the Trump administration's mass...
Several Ivy League universities - including Harvard and Princeton - experienced hacks in 2025 through unpatched enterprise software and...
Madhu Gottumukkala also faced questions about a reported failed polygraph exam and attempts to reassign the agency's chief information...
Investors who lost money in FFIV after its stock plunged due to allegedly misleading financial statements are urged to contact Hagens Berman...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Covington Behavioral Health is http://www.covingtonbh.com.
According to Rankiteo, Covington Behavioral Health’s AI-generated cybersecurity score is 754, reflecting their Fair security posture.
According to Rankiteo, Covington Behavioral Health currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Covington Behavioral Health has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Covington Behavioral Health is not certified under SOC 2 Type 1.
According to Rankiteo, Covington Behavioral Health does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Covington Behavioral Health is not listed as GDPR compliant.
According to Rankiteo, Covington Behavioral Health does not currently maintain PCI DSS compliance.
According to Rankiteo, Covington Behavioral Health is not compliant with HIPAA regulations.
According to Rankiteo,Covington Behavioral Health is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Covington Behavioral Health operates primarily in the Mental Health Care industry.
Covington Behavioral Health employs approximately 64 people worldwide.
Covington Behavioral Health presently has no subsidiaries across any sectors.
Covington Behavioral Health’s official LinkedIn profile has approximately 1,185 followers.
Covington Behavioral Health is classified under the NAICS code 62133, which corresponds to Offices of Mental Health Practitioners (except Physicians).
No, Covington Behavioral Health does not have a profile on Crunchbase.
Yes, Covington Behavioral Health maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/covington-behavioral-health-hospital.
As of January 22, 2026, Rankiteo reports that Covington Behavioral Health has experienced 1 cybersecurity incidents.
Covington Behavioral Health has an estimated 5,283 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Total Financial Loss: The total financial loss from these incidents is estimated to be $875 thousand.
Detection and Response: The company detects and responds to cybersecurity incidents through an communication strategy with settlement agreement with class action plaintiffs (reimbursement, identity-theft protection, and pro rata cash payments offered)..
Title: Acadia Health LLC Data Breach (2023)
Description: Louisiana-based Acadia Health LLC agreed to pay $875,000 to settle a proposed class action alleging negligence in protecting the personal information of nearly 130,000 individuals exposed in a 2023 data breach. Affected individuals, particularly those with exposed Social Security numbers, are eligible for reimbursement (up to $10,000 for documented losses, $12,500 for adult subclass members) and minors receive 10 years of identity-theft protection. Pro rata cash payments are also an option.
Type: Data Breach
Common Attack Types: The most common types of attacks the company has faced is Breach.

Financial Loss: $875,000 (settlement amount)
Data Compromised: Personal information (including Social Security numbers)
Customer Complaints: Class action lawsuit filed
Brand Reputation Impact: Negative (settlement implies reputational damage)
Legal Liabilities: $875,000 settlement for negligence claims
Identity Theft Risk: High (Social Security numbers exposed; minors receive 10 years of identity-theft protection)
Average Financial Loss: The average financial loss per incident is $875.00 thousand.
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Personal Information, Social Security Numbers and .

Entity Name: Acadia Health LLC
Entity Type: Healthcare Provider
Industry: Healthcare
Location: Louisiana, USA
Customers Affected: 130,000 individuals

Communication Strategy: Settlement agreement with class action plaintiffs (reimbursement, identity-theft protection, and pro rata cash payments offered)

Type of Data Compromised: Personal information, Social security numbers
Number of Records Exposed: 130,000
Sensitivity of Data: High (includes SSNs)
Personally Identifiable Information: Yes (Social Security numbers, other personal data)

Legal Actions: Class action lawsuit settled for $875,000
Ensuring Regulatory Compliance: The company ensures compliance with regulatory requirements through Class action lawsuit settled for $875,000.

Source: Class action lawsuit settlement details (plaintiffs’ motion for final approval)
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Class action lawsuit settlement details (plaintiffs’ motion for final approval).
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Settlement agreement with class action plaintiffs (reimbursement, identity-theft protection and and pro rata cash payments offered).

Customer Advisories: Settlement terms communicated to affected individuals (reimbursement, identity-theft protection, cash payments)
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Settlement terms communicated to affected individuals (reimbursement, identity-theft protection and cash payments).
Highest Financial Loss: The highest financial loss from an incident was $875,000 (settlement amount).
Most Significant Data Compromised: The most significant data compromised in an incident was Personal information (including Social Security numbers).
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was Personal information (including Social Security numbers).
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 130.0K.
Most Significant Legal Action: The most significant legal action taken for a regulatory violation was Class action lawsuit settled for $875,000.
Most Recent Source: The most recent source of information about an incident is Class action lawsuit settlement details (plaintiffs’ motion for final approval).
Most Recent Customer Advisory: The most recent customer advisory issued were an Settlement terms communicated to affected individuals (reimbursement, identity-theft protection and cash payments).
.png)
SummaryA command injection vulnerability (CWE-78) has been found to exist in the `wrangler pages deploy` command. The issue occurs because the `--commit-hash` parameter is passed directly to a shell command without proper validation or sanitization, allowing an attacker with control of `--commit-hash` to execute arbitrary commands on the system running Wrangler. Root causeThe commitHash variable, derived from user input via the --commit-hash CLI argument, is interpolated directly into a shell command using template literals (e.g., execSync(`git show -s --format=%B ${commitHash}`)). Shell metacharacters are interpreted by the shell, enabling command execution. ImpactThis vulnerability is generally hard to exploit, as it requires --commit-hash to be attacker controlled. The vulnerability primarily affects CI/CD environments where `wrangler pages deploy` is used in automated pipelines and the --commit-hash parameter is populated from external, potentially untrusted sources. An attacker could exploit this to: * Run any shell command. * Exfiltrate environment variables. * Compromise the CI runner to install backdoors or modify build artifacts. Credits Disclosed responsibly by kny4hacker. Mitigation * Wrangler v4 users are requested to upgrade to Wrangler v4.59.1 or higher. * Wrangler v3 users are requested to upgrade to Wrangler v3.114.17 or higher. * Users on Wrangler v2 (EOL) should upgrade to a supported major version.
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.