Clingantry

From ClingantryAI Health Regulator News

healthcare ai & robotics — regulatory & breach intelligence, sourced only from primary government record


Tagged “hhs-ocr” · 42 entries

CareCloud breach: 3.7 million records exposed in hacking incident

CareCloud, Inc., a business associate based in New Jersey, reported a hacking/IT incident to HHS OCR on July 24, 2026. The breach affected 3,756,469 individuals, with data compromised on a network server. Because CareCloud is a business associate, any healthcare providers, health plans, or other covered entities that use its services may need to verify if their patient data was included in this incident. Organizations should review their contracts and communications from CareCloud to determine exposure. This filing date is when the report was submitted to the regulator, not necessarily when the breach occurred or was discovered.

One Medical Group reports hacking incident affecting 153,174 patients

One Medical Group, Inc., a healthcare provider in California, filed a breach report with HHS OCR on July 17, 2026. The filing describes a hacking/IT incident that compromised the protected health information of 153,174 individuals. The breached data was located on a network server. This submission date marks when the report was sent to regulators, not necessarily when the breach occurred or was discovered. Healthcare administrators should monitor their own vendor contracts and security protocols, as large-scale provider breaches often signal broader industry threats. While this specific incident involves One Medical Group, the scale highlights the ongoing risk of network server vulnerabilities in healthcare IT infrastructure.

Delta Dental of Virginia reports hacking incident affecting 126,953 individuals

A health plan, Delta Dental of Virginia, filed a breach notification with HHS OCR on November 21, 2025. The filing reports a hacking/IT incident that compromised the protected health information of 126,953 individuals. The breached data was located in email systems. This submission date reflects when the report was filed with the government, not necessarily when the breach occurred or was discovered. As a covered entity, the health plan is required to report breaches affecting 500 or more individuals within 60 days of discovery. Healthcare administrators should monitor for further details regarding the specific data elements exposed and any required notifications to affected individuals.

Persante Health Care reports hacking incident affecting 111,815 individuals

Persante Health Care, a business associate operating in New Jersey, filed a breach notification with HHS OCR on November 26, 2025. The filing reports a hacking/IT incident involving a network server that exposed the protected health information of 111,815 individuals. Because Persante is a business associate, this incident likely impacts the covered entities—such as hospitals, clinics, or health plans—that rely on its services. Healthcare administrators should check whether their organization uses Persante’s services and review any communications from the vendor regarding next steps for affected patients. The submission date reflects when the report was filed with regulators, not necessarily when the breach occurred or was discovered.

Acadian Ambulance Service reports massive data breach — 2.9 million records affected

Acadian Ambulance Service, Inc., a healthcare provider in Louisiana, filed a report with HHS OCR on August 20, 2024, disclosing a hacking/IT incident. The breach exposed the protected health information of 2,896,985 individuals. The compromised data was stored on a network server. This filing date reflects when the report was submitted to the government, not necessarily when the incident occurred or was discovered. Healthcare administrators should note the scale of this incident as a reminder of the risks associated with network security. While this specific event involves an ambulance service, the underlying vulnerability type is relevant to any organization managing electronic health records.

Business associate Xsolis reports massive hacking incident affecting 1.4 million records

A business associate named Xsolis, Inc. filed a breach report with HHS OCR on June 5, 2026, disclosing a hacking/IT incident that compromised the data of 1,396,519 individuals. The unauthorized access occurred on a network server. Because Xsolis is a business associate, its clients—likely healthcare providers or health plans—may also have reporting obligations to their own patients or members. Administrators should verify if their organization uses Xsolis services and review internal protocols for handling third-party breach notifications. This filing date reflects when the report was submitted to the government, not necessarily when the breach occurred or was discovered.

HealthEquity breach affects 4.3 million — Business Associate filing

HealthEquity, Inc., a Business Associate based in Utah, filed a report with HHS OCR on August 9, 2024, disclosing a hacking/IT incident. The breach impacted the protected health information of 4.3 million individuals. The compromised data was located on a network server. Because HealthEquity is a Business Associate, your organization may be affected if you use its services for health savings accounts or related benefits administration. Review your contracts and incident response plans to understand your obligations when a vendor experiences a security incident. This filing date reflects when the report was submitted to the regulator, not necessarily when the breach occurred.

Business associate breach affects 134,918 individuals — HHS OCR filing

A business associate named Kerber, Eck & Braeckel LLP filed a breach report with HHS OCR on August 16, 2024. The filing covers a hacking/IT incident that compromised data for 134,918 individuals. The breached information was located on a network server. Because this entity is a business associate, your organization may be affected if you contract with them for services handling protected health information. Review your vendor contracts and security logs to determine if you are among the impacted covered entities. This submission date reflects when the report was filed with HHS, not necessarily when the breach occurred or was discovered.

Delta Health System reports hacking incident affecting 216,532 individuals

Delta Health System, a healthcare provider in Mississippi, filed a breach notification with HHS OCR on March 29, 2024. The filing reports a hacking/IT incident that compromised the protected health information of 216,532 individuals. The unauthorized access occurred on a network server. This submission date reflects when the report was filed with the regulator, not necessarily when the breach occurred or was discovered. Healthcare administrators should note this incident as a reminder of the risks associated with network infrastructure vulnerabilities. While this specific event involves a provider in Mississippi, the scale of the breach highlights the importance of monitoring IT security across all covered entities and business associates.

Western Orthopaedics reports hacking incident affecting 113,330 patients

Western Orthopaedics, P.C., a healthcare provider in Colorado, filed a breach notification with HHS OCR on May 1, 2026. The filing reports a hacking/IT incident that compromised the protected health information of 113,330 individuals. The unauthorized access occurred on the organization's network server. This submission date marks when the report was sent to the regulator, not necessarily when the breach occurred or was discovered. As a covered entity, Western Orthopaedics is required to report breaches affecting 500 or more individuals within 60 days of discovery. Healthcare administrators should monitor for similar IT incidents and ensure their own incident response plans are current.

Florida medical group reports hacking incident affecting 246,711 patients

A Florida healthcare provider, Medical Associates of Brevard, LLC, has filed a report with HHS OCR regarding a hacking/IT incident. The filing, submitted on September 5, 2025, indicates that the personal information of 246,711 individuals was compromised. The breach occurred on a network server. As a covered entity, this provider is required to notify affected individuals and the Department of Health and Human Services. Healthcare administrators should monitor for similar threats to their own network infrastructure and ensure their incident response plans are current.

Brown Health Medical Group-MA reports massive hacking incident affecting 311,760 patients

A healthcare provider in Massachusetts has filed a report with HHS OCR regarding a hacking/IT incident. The entity, operating as Brown Health Medical Group-MA, states that the breach impacted 311,760 individuals. The unauthorized access occurred on a network server. This filing was submitted to the government on July 16, 2026. Healthcare administrators should note that this is a covered entity report, distinct from a business associate filing. While the specific data elements are not detailed here, the scale suggests significant patient data exposure. Monitor for further disclosures from the provider regarding notification timelines and remediation steps.

Business associate breach affects 3.8 million records — Ohio

A Business Associate named Unlimited Technology Systems, LLC reported a hacking/IT incident to HHS OCR on July 21, 2026. The filing indicates that 3,803,750 individuals were affected. The unauthorized access occurred on a network server. Because the entity is a Business Associate, your organization may be impacted if you contract with this vendor for services involving protected health information. Review your vendor contracts and security logs to determine if you are among the affected clients. This submission date is when the report was filed, not necessarily when the breach occurred or was discovered.

Alabama Ophthalmology Associates reports hacking incident affecting 131,576 patients

A healthcare provider in Alabama has filed a breach notification with HHS OCR. Alabama Ophthalmology Associates reported that a hacking/IT incident compromised the protected health information of 131,576 individuals. The unauthorized access occurred on a desktop computer and a network server. This filing was submitted on April 8, 2025, which is the date the report was received by the regulator, not necessarily the date the breach occurred. As a covered entity, the provider is required to notify affected individuals and the Department of Health and Human Services. Healthcare administrators should monitor for similar incidents involving network servers and ensure their own incident response plans are current.

Mid America Physician Services reports hacking incident affecting 104,513 individuals

A healthcare provider in Kansas, Mid America Physician Services, filed a breach notification with HHS OCR on January 13, 2025. The filing reports a hacking/IT incident involving a network server that exposed the protected health information of 104,513 individuals. As a covered entity, the provider is required to report breaches affecting 500 or more people within 60 days of discovery. This submission date reflects when the report was filed with the regulator, not necessarily when the breach occurred. Healthcare administrators should monitor such filings to understand the evolving threat landscape for cybersecurity risks targeting provider networks.

Anne Arundel Dermatology reports massive data breach — 1.9 million records affected

A healthcare provider in Maryland has reported a significant security incident to HHS OCR. Anne Arundel Dermatology filed a breach notification on July 11, 2025, stating that a hacking/IT incident compromised data on a network server. The filing indicates that 1,905,000 individuals were affected. This submission date marks when the report was sent to regulators, not necessarily when the breach occurred or was discovered. As a covered entity, the dermatology group is required to report breaches affecting 500 or more individuals within 60 days of discovery. Healthcare administrators should note the scale of this incident for risk assessment purposes.

IPPC Inc. reports hacking incident affecting 133,862 patients

IPPC Inc., IPPC of New York LLC, and Innovative Pharmacy LLC (collectively IPPC) filed a breach report with HHS OCR on February 27, 2026. The New Jersey-based healthcare provider reported a hacking/IT incident involving its network server. The filing indicates that 133,862 individuals were affected by the unauthorized access. This submission date marks when the report was sent to regulators, not necessarily when the breach occurred or was discovered. Healthcare administrators should monitor their own vendor relationships and security protocols, as large-scale provider breaches often signal broader industry threats.

Harbor healthcare provider reports hacking incident affecting 216,000 patients

A healthcare provider named Harbor has filed a report with HHS OCR regarding a hacking/IT incident. The breach involved unauthorized access to a network server, potentially exposing the protected health information of 216,000 individuals. The filing was submitted on September 30, 2025. As a covered entity, Harbor is required to notify affected individuals and the Department of Health and Human Services. Healthcare administrators should monitor for notifications if their patients may be members of this organization, and review their own vendor contracts to ensure business associates have robust security measures for network servers.

Long Beach City breach: 258,191 records exposed in hacking incident

A healthcare provider operating under the City of Long Beach, CA, reported a hacking/IT incident to HHS OCR on April 14, 2025. The breach affected 258,191 individuals, with data compromised on a network server. This filing date reflects when the report was submitted to regulators, not necessarily when the incident occurred or was discovered. Healthcare administrators should monitor this case to understand how large-scale municipal provider breaches are handled. While this specific incident involves a city-run entity, the scale highlights the ongoing risk of server-based attacks. Review your own incident response plans to ensure they can handle mass notification requirements if a similar event impacts your organization.

Madera Community Hospital reports hacking incident affecting over 150,000 patients

Madera Community Hospital, a healthcare provider in California, filed a breach report with HHS OCR on July 13, 2026. The filing describes a hacking/IT incident involving a network server. The breach potentially exposed the protected health information of 150,810 individuals. This submission date marks when the report was sent to regulators, not when the incident occurred. Healthcare administrators should note the scale of this exposure as a reminder of the risks associated with network server vulnerabilities. While this specific event affects a single provider, it highlights the ongoing threat of cyberattacks in the healthcare sector. Monitor your own systems for similar indicators of compromise.

University of Iowa Health Care reports hacking incident affecting 101,875 individuals

University of Iowa Health Care, a healthcare provider in Iowa, filed a breach notification with HHS OCR on August 29, 2025. The filing reports a hacking/IT incident involving data stored on a network server. The breach potentially affected 101,875 individuals. This submission date marks when the report was sent to the regulator, not necessarily when the incident occurred or was discovered. Healthcare administrators should monitor such filings to understand the scale of recent cyber threats facing large provider systems. While this specific incident involves a university health system, it highlights the ongoing risk of server-based attacks that can expose large volumes of patient records. No further details on the specific data types or remediation steps are provided in this summary record.

Florida business associate reports hacking incident affecting 145,714 individuals

A Florida-based business associate, Operation PAR, Inc., filed a report with HHS OCR regarding a hacking/IT incident. The filing, submitted on June 25, 2026, indicates that 145,714 individuals were affected. The breach occurred on a network server. Because this entity is a business associate, its covered entities (such as health plans or providers) may need to verify their own notification obligations. Administrators should check if they contract with this vendor and review their business associate agreements for specific reporting requirements.

SimonMed Imaging reports massive data breach affecting 1.2 million patients

SimonMed Imaging, a healthcare provider in Arizona, filed a report with HHS OCR on March 27, 2025, disclosing a hacking/IT incident. The breach compromised the protected health information of 1,275,669 individuals. The unauthorized access occurred on a network server. As a covered entity, SimonMed is required to notify affected individuals and report the incident to the government. Healthcare administrators should monitor for similar threats to their own network infrastructure and ensure their incident response plans are current.

United of Omaha Life Insurance reports hacking breach affecting 107,894 individuals

United of Omaha Life Insurance Company, a health plan based in Nebraska, filed a report with HHS OCR regarding a hacking/IT incident. The breach affected 107,894 individuals. According to the filing, the compromised information was located in email. The report was submitted to HHS OCR on July 26, 2024. As a covered entity, the health plan is required to report breaches of unsecured protected health information affecting 500 or more individuals. This filing confirms the incident met that threshold. Healthcare administrators should note that email remains a common vector for data exposure. While this specific breach involves a health plan, the incident highlights the ongoing risks associated with email security across the healthcare ecosystem.

Escambia Community Clinics reports hacking incident affecting 143,969 patients

Escambia Community Clinics, Inc., operating as Community Health Northwest Florida, filed a breach report with HHS OCR on February 3, 2025. The healthcare provider disclosed that a hacking/IT incident compromised data stored on a network server. The filing indicates that 143,969 individuals were affected by this unauthorized access. As a covered entity, the clinic is required to report breaches of this scale. Administrators at similar community health centers and clinics should review their own server security protocols and incident response plans, noting that submission dates reflect when the report was filed, not necessarily when the breach occurred or was discovered.

PIH Health reports massive data breach affecting nearly 3 million patients

Healthcare administrators should note that PIH Health, Inc., a healthcare provider in California, filed a report with HHS OCR for a significant data breach. The filing, submitted on January 31, 2025, indicates that a hacking/IT incident compromised the personal information of 2,947,264 individuals. The unauthorized access occurred on a network server. While this specific filing details the scope of the incident at PIH Health, it serves as a reminder for all covered entities to review their own cybersecurity protocols. This report reflects the submission date to the regulator, not necessarily the date the breach was discovered or announced to patients.

TriZetto Provider Solutions reports massive data breach affecting 3.4 million records

TriZetto Provider Solutions, a business associate serving healthcare providers, reported a hacking/IT incident to HHS OCR. The filing, submitted on February 6, 2026, states that 3,433,965 individuals were affected. The breach occurred on a network server. Because TriZetto is a business associate, your organization may be impacted if you use their services for claims processing or other administrative functions. Review your contracts and contact your vendor management team to confirm whether your entity is among those affected and to understand any required next steps.

Insightin Health reports massive data breach affecting nearly 2 million records

Insightin Health, Inc., a business associate based in Maryland, filed a report with HHS OCR on January 16, 2026, disclosing a hacking/IT incident. The breach compromised the protected health information of 1,949,534 individuals. The unauthorized access occurred on a network server. Because Insightin Health is a business associate, your organization may be impacted if you contract with them for services such as claims processing or data analytics. Review your vendor contracts and assess whether you receive data from this entity. If so, contact your legal and compliance teams to determine if you need to notify your own patients or take additional risk mitigation steps.

Summit Pathology reports massive hacking incident affecting 1.8 million patients

Summit Pathology and Summit Pathology Laboratories, Inc., a healthcare provider in Colorado, filed a breach report with HHS OCR on October 18, 2024. The filing covers a hacking/IT incident involving a network server that exposed the protected health information of 1,813,538 individuals. This submission date is when the report was filed with the government, not necessarily when the breach occurred. As a covered entity, Summit Pathology is responsible for notifying affected individuals and the Department of Health and Human Services. Healthcare administrators should monitor for notification letters if their patients or staff received pathology services from this organization, as the scale of this incident suggests widespread exposure of sensitive medical data.

Florida imaging group reports hacking incident affecting 171,862 patients

Doctors Imaging Group, a healthcare provider in Florida, filed a breach report with HHS OCR on September 24, 2025. The filing covers a hacking/IT incident that compromised the personal health information of 171,862 individuals. The unauthorized access occurred on a network server. While this specific incident involves an imaging group, administrators at hospitals, clinics, and health plans should review their own vendor contracts and security monitoring protocols. The submission date marks when the report was filed, not necessarily when the breach occurred or was discovered. Organizations should verify if they share data with this entity or similar providers to assess potential downstream risks.

Pennsylvania eye care group reports hacking incident affecting 200,000 patients

A Pennsylvania-based eye care provider, Tri Century Eye Care PC, filed a report with HHS OCR regarding a hacking/IT incident. The filing, submitted on October 31, 2025, indicates that the personal information of 200,000 individuals was compromised. The breach originated from a network server. As a healthcare provider, this entity is a covered entity under HIPAA. Administrators should note this as a significant data security event in the ophthalmology sector. The submission date marks when the report was filed with the government, not necessarily when the incident occurred or was discovered. No further details on the specific data types or remediation steps are provided in this initial filing.

University of Iowa Community Home Care reports hacking incident affecting 109,029 individuals

University of Iowa Community Home Care, a healthcare provider, filed a breach report with HHS OCR on August 29, 2025. The filing describes a hacking/IT incident involving a network server. The breach potentially affected 109,029 individuals. As a covered entity, the provider is required to notify affected patients and report the incident to the government. This submission date marks when the report was filed, not necessarily when the breach occurred. Healthcare administrators should monitor for similar IT security risks within their own networks and ensure their incident response plans are current.

Hacking incident at South Carolina healthcare provider affects 143,842 individuals

A healthcare provider in South Carolina, Innovative Scientific Solutions, LLC, reported a hacking/IT incident to HHS OCR on April 17, 2026. The breach affected 143,842 individuals after unauthorized access to a network server. This filing date reflects when the report was submitted, not necessarily when the incident occurred or was discovered. Healthcare administrators should monitor for further details regarding the specific data compromised and any required notifications to affected patients or partners.

Brightstar Global Solutions reports massive data breach affecting over 100,000 individuals

Brightstar Global Solutions Corporation, a health plan based in Rhode Island, filed a report with HHS OCR on October 3, 2025, regarding a hacking/IT incident. The breach compromised the protected health information of 103,879 individuals. The unauthorized access occurred on a network server. As a covered entity, Brightstar is required to notify affected individuals and report the incident to the government. Healthcare administrators should monitor this case to understand how large-scale cyber incidents are handled by health plans. This filing confirms the breach was reported to regulators; it does not indicate when the incident originally occurred or was discovered.

Philadelphia Corporation for Aging reports massive data breach affecting over 400,000 individuals

A significant security incident has been reported by Philadelphia Corporation for Aging (PCA), a Business Associate operating in Pennsylvania. The organization filed a report with HHS OCR on September 23, 2025, disclosing a hacking/IT incident that compromised data stored on a network server. This breach affects a substantial number of individuals, with 410,491 people impacted. Because PCA is a Business Associate, this incident likely involves the health data of patients from various covered entities, such as clinics or health plans, that contract with them. Healthcare administrators should review their vendor contracts and security protocols to ensure their own Business Associates are maintaining adequate safeguards against cyber threats.

Centers Lab NJ reports massive data breach affecting over 540,000 patients

A major healthcare provider, Centers Lab NJ LLC, has reported a significant data breach to the HHS Office for Civil Rights. The incident involved a hacking/IT incident targeting a network server, compromising the records of 542,377 individuals. The breach was officially filed on June 18, 2026. Hospital administrators should monitor this case closely as a reminder of the risks associated with network security vulnerabilities. While this specific report does not detail immediate operational changes for other facilities, it underscores the critical need for robust cybersecurity measures to protect patient data from unauthorized access.

Major Data Breach at ATSG, Inc. — Nearly 1 Million Records Compromised

A significant data breach has been reported involving ATSG, Inc., a business associate operating in New York. This incident, classified as a hacking/IT event, compromised the protected health information of 909,469 individuals. The breach occurred on a network server and was reported to the HHS Office for Civil Rights on October 4, 2024. Hospital administrators should review their own business associate agreements to ensure vendors have robust cybersecurity measures. While this specific incident affects ATSG, it serves as a stark reminder of the risks associated with third-party data handling. Monitor your own systems for unusual activity and verify that your partners are compliant with security standards.

Navia Benefit Solutions Breach — 2.15 Million in OCR Filing, ~2.7 Million Total

Navia Benefit Solutions, Inc., a Washington-based business associate for employee benefits (FSA, HSA, HRA, COBRA, DCAP), reported a hacking/IT incident to HHS OCR on March 18, 2026. The filing lists 2,151,330 individuals affected, but external reports from the Maine Attorney General and other sources cite a total of approximately 2,697,540 individuals. The breach involved data on a network server and other locations. Because Navia serves employers rather than hospitals, health plans, self-insured employers, and benefits administrators should verify if they use Navia. If so, review your vendor contracts and assess potential exposure to your members or employees. This filing date is when the report was submitted to OCR, not when the breach occurred.

Coastal Carolina Health Care reports major data breach affecting over 110,000 patients

Coastal Carolina Health Care, PA in North Carolina has reported a significant data breach to the Department of Health and Human Services. The incident involved a hacking or IT incident targeting a network server. This breach affects 110,304 individuals, exposing their protected health information. The report was submitted on March 24, 2026. Hospital administrators should review their own cybersecurity protocols to ensure similar vulnerabilities are not present in their systems. While this specific incident is contained to Coastal Carolina Health Care, it serves as a reminder of the ongoing risks posed by cyber threats to healthcare networks. Ensure your IT teams are monitoring for unusual activity and that incident response plans are up to date.

Laurel Eye Clinic reports massive data breach affecting over 145,000 patients

Laurel Eye Clinic in Pennsylvania has reported a significant cybersecurity incident to the HHS Office for Civil Rights. The breach involved a hacking or IT incident targeting the clinic's network server. This event potentially exposed the protected health information of 145,221 individuals. The report was submitted on April 22, 2026. Hospital administrators should review their own network security protocols to ensure similar vulnerabilities are addressed. While this specific incident is contained to one provider, it highlights the ongoing risk of server-based attacks in healthcare settings. Ensure your IT teams are monitoring for unauthorized access and that incident response plans are up to date.

Sandhills Medical Foundation reports hacking incident — 169,017 individuals affected

Sandhills Medical Foundation, a healthcare provider in South Carolina, reported a data breach to HHS OCR. The incident is classified as a hacking/IT incident, with data compromised on a network server. A total of 169,017 individuals were affected. The report was submitted on September 14, 2025. This filing highlights risks for providers and other covered entities. Administrators should review their own incident response plans. Ensure your breach notification procedures are current and ready for immediate deployment if a similar incident occurs at your organisation.

Dameron Hospital reports major data breach affecting over 210,000 patients

Dameron Hospital in California has reported a significant data breach to HHS OCR. The incident involved a hacking or IT incident that compromised information stored on a network server. This breach affects 210,706 individuals, making it a large-scale event that hospital administrators should monitor for potential industry-wide trends. The filing was submitted on April 2, 2025. While this specific report does not detail the exact data types exposed, the scale suggests a serious security failure. Administrators should review their own server security protocols and ensure incident response plans are current. This is a confirmed breach, not a proposal, and highlights the ongoing risk of cyberattacks on healthcare infrastructure.

← Back to AI Health Regulator News