MNMalwareHealthcareFinancial ServicesHealthcareRansomwareSummit ReinsuranceBusiness Associate (HIPAA)Customer Data InvolvedData EncryptedRansom DemandedHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTHighContained
PrimeWest Health
bd_3e1b196176065006 · schema v1 · pii pii-v1
Full breach record for PrimeWest Health →PrimeWest Health (MN, Health Plan) reported to HHS OCR on 2016-12-29 a Hacking/IT Incident affecting 2,441 individuals. On November 15, 2016, business associate Summit Reinsurance notified PrimeWest Health of a ransomware incident on a network server containing CE data. PHI exposed included names, addresses, dates of birth, and Social Security numbers. The BA mitigated by taking the server offline, confirming ransomware was isolated to one server, and removing remote access. OCR obtained documented assurances of corrective actions.
HIPAA clock✓ HHS notified6 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2,441 affectedView incident
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Dec 29, 2016
- Raw hash
- f5950b6e8da9500f59f3fc4fc86fa9cc33c21c1453a49ee8ba589b06332b3694
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- PrimeWest Healthnorm: primewest health
- Industry
- Insurance — Health
Victim entity
- Name
- PrimeWest Healthnorm: primewest health
- Industry
- Insurance — Health
- Industry
- Healthcaresource defaultFinancial Servicesllm
Incident
- Discovered
- Nov 15, 2016
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 2,441
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access· Summit Reinsurance
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- Summit ReinsuranceExternalFinancial
- Regulator citations
- HHS OCR notified; OCR obtained documented assurances of corrective actions
- Third party
- via Summit Reinsurancebusiness associate
Compliance
- Time to disclose
- 6 weeks(44 days from discovery to filing)
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Nov 15, 2016→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.