FLPhysicalHealthcareHealthcareTheftCustomer Data InvolvedHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTHighResolved
Multilingual Psychotherapy Centers, Inc
bd_0ae69d060a9de969 · schema v1 · pii pii-v1
Full breach record for Multilingual Psychotherapy Centers, Inc →Multilingual Psychotherapy Centers, Inc. (FL) reported to HHS on 2014-10-28 that an encrypted network server was physically stolen from its premises on October 20, 2014, following a break-in. The server contained PHI of 3,500 individuals including names, dates of birth, Social Security numbers, addresses, and Medicaid ID numbers. OCR confirmed adequate encryption policies were in place. The CE increased physical safeguards, updated policies, and implemented media notification procedures.
HIPAA clockDiscovered Oct 20, 2014 → Notified Oct 28, 20148d ✓ HIPAA 60-day OK8 days discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3,500 affectedView incident
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Oct 28, 2014
- Raw hash
- 90f724fbe6ff97f552f576e7fd23da75f3b13dbb912b0d538d1891a4be1256a3
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Multilingual Psychotherapy Centers, Incnorm: multilingual psychotherapy centers
- Industry
- Health Care Services
Victim entity
- Name
- Multilingual Psychotherapy Centers, Incnorm: multilingual psychotherapy centers
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Oct 20, 2014
- Materiality determined
- —
- Notification sent
- Oct 28, 2014
- Affected individuals
- 3,500
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- External
- Regulator citations
- HHS OCR — breach notification submitted; OCR reviewed policies and provided guidance on media notice requirements
Compliance
- Time to disclose
- 8 days(8 days from discovery to filing)
- Compliance flags
- HIPAA 60-day OK · 8dHHS notified · 8d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Oct 20, 2014→ Notified: Oct 28, 20148d 60 days HIPAA 60-day OK HIPAA Discovered: Oct 20, 2014→ Notified: Oct 28, 20148d regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.