Logansport Memorial Hospital
bd_11899b2550ca4cc0 · schema v1 · pii pii-v1
Full breach record for Logansport Memorial Hospital →The covered entity (CE), Logansport Memorial Hospital, reported that an employee was the victim of an email phishing scheme that affected the electronic protected health information (ePHI) of approximately 7,877 individuals. The ePHI involved included names, addresses, dates of birth, Social Security numbers, medical record numbers, lab results, and other treatment information. The CE notified HHS, affected individuals, the media, and provided substitute notice. In addition, the CE provided free credit monitoring services to affected individuals. In its mitigation efforts, the CE sanctioned the responsible employee and implemented additional technical and security measures. All employees were retrained on the proper methods of recognizing and responding to fraudulent email communications. OCR obtained assurances that the CE implemented the corrective actions noted.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Apr 23, 2019
- Raw hash
- c861e7a0da4bf05c476e5c515b2c749a4e584622e95908e14b5712e60589cc24
Source filing
Reporting entity
- Name
- Logansport Memorial Hospitalnorm: logansport memorial hospital
- Industry
- Health Care Services
Victim entity
- Name
- Logansport Memorial Hospitalnorm: logansport memorial hospital
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 7,877
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- Threat actor
- External
- Regulator citations
- Notified HHSOCR obtained assurances that the CE implemented the corrective actions noted
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.