PhysicalTheftData ExfiltratedCustomer Data InvolvedPHIHEALTH_BASICIDENTITY_BASICLowContained
American Sleep Medicine
bd_2d67eb1294a3dc28 · schema v1 · pii pii-v1
Full breach record for American Sleep Medicine →American Sleep Medicine disclosed the theft of an external hard drive containing patient sleep study data (names, DOB, medical history) from a locked server room in San Diego, CA. The incident occurred in 2012, was discovered on March 3, 2015, and reported to the San Diego Police Department. No SSNs or financial data were involved. The company destroyed remaining external drives and offered 90 days of credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_134aa3e249e40b7aHHS OCRfiled 2015-04-16Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-49386
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 16, 2015
- Raw hash
- 8781d33a94fb096620ed3399a333e5aae8f1b74f6aa9a8f689e6abe8a26d00e2
Reporting entity
- Name
- American Sleep Medicinenorm: american sleep medicine
- Domain
- americansleepmedicine.com
Victim entity
- Name
- American Sleep Medicinenorm: american sleep medicine
- Domain
- americansleepmedicine.com
Incident
- Discovered
- Mar 3, 2015
- Materiality determined
- Apr 15, 2015
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- External
- Regulator citations
- Submitted breach notification to California Office of the Attorney General
Compliance
- Time to disclose
- 6 weeks(44 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.