Southeast Eye Institute, P.A.
bd_506463317d30123f · schema v1 · pii pii-v1
Full breach record for Southeast Eye Institute, P.A. →OCR HHS breach portal entry: Southeast Eye Institute, P.A. dba Eye Associates of Pinellas (FL, healthcare provider) reported a Hacking/IT Incident on a network server affecting 87,314 individuals, submitted 2016-05-05. A business associate was involved. The OCR narrative describes Bizmatics (an EHR/business-associate vendor) as having suffered a cyber-attack affecting PHI of patients of multiple covered entities; the narrative cites ~3,156 patients of named other CEs but Southeast Eye Institute's own filing reports 87,314 affected. PHI included names, addresses, DOBs, SSNs, clinical diagnoses/conditions, lab results, medications, and other treatment information. Bizmatics engaged a cybersecurity firm, implemented additional safeguards, and retrained staff; OCR obtained assurances of corrective action.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- May 5, 2016
- Raw hash
- 4e3f094e261c2d6e5dd9cf521884a6c693f5eecd7f57f635ea2a6e02f0ed76b2
Source filing
Reporting entity
- Name
- Southeast Eye Institute, P.A.norm: southeast eye institute
- Industry
- Healthcare Provider
Victim entity
- Name
- Southeast Eye Institute, P.A.norm: southeast eye institute
- Industry
- Healthcare Provider
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 87,314
- Data types
- PHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Third-Party / Supply Chain
- Threat actor
- External
- Regulator citations
- HHS OCR investigation
- Third party
- via Bizmatics
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.