Personal Touch Home Aides of New York, Inc.
bd_4464ff1f8eab49e1 · schema v1 · pii pii-v1
Full breach record for Personal Touch Home Aides of New York, Inc. →Personal Touch Home-Aides, Inc. (NY) reported to HHS on 2020-01-28 that its business associate was the victim of a ransomware attack affecting the ePHI of 2,633 individuals. Breached information was located on Network Server and Other systems. ePHI involved included names, addresses, dates of birth, Social Security numbers, claims information, diagnoses, lab results, medications, and other treatment information. The CE notified HHS, affected individuals, and the media, and implemented additional internal controls and technical safeguards. OCR obtained assurances that corrective actions were implemented.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jan 28, 2020
- Raw hash
- 4b7587f45cf4f5d47a2a0d90b1f4c0e64e7162a93efb204ef0c2f3cc72987271
Source filing
Reporting entity
- Name
- Personal Touch Home Aides of New York, Inc.norm: personal touch home aides of new york
- Industry
- Health Care Services
Victim entity
- Name
- Personal Touch Home Aides of New York, Inc.norm: personal touch home aides of new york
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 2,633
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- OCR obtained assurances that the CE implemented corrective actions
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.