Phoenix Children's Hospital, Inc.
bd_594cc2b512b3e88c · schema v1 · pii pii-v1
Full breach record for Phoenix Children's Hospital, Inc. →2 incidents on filePhoenix Children's Hospital (AZ) reported to HHS OCR on 2020-01-14 a Hacking/IT Incident (email phishing scheme) affecting 1,860 individuals. Several employees were victims of a phishing attack exposing ePHI stored in email, including names, dates of birth, addresses, drivers' license information, diagnoses, lab results, medications prescribed, and other treatment information. OCR investigated; the CE revised HIPAA security procedures, retrained staff, and implemented additional technical safeguards.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Jan 14, 2020
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- New Hampshire State AGbd_9894b970c338456e2020-01-14Verified
- Indiana State AGbd_054a8aedc022fbda2020-01-15 · +1dVerified
- Illinois State AGbd_3dd6b028425b9aec2020-01-01 · +13dVerified
- Illinois State AGbd_f62c1bff85427b7f2020-01-01 · +13dVerified
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Jan 15 (IN) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.