Webber Chiropractic Sports Clinic, Inc.
bd_5f1d722e9331a5d1 · schema v1 · pii pii-v1
Full breach record for Webber Chiropractic Sports Clinic, Inc. →Webber Chiropractic Sports Clinic, Inc. (WA) reported to HHS OCR on 2024-01-23 a ransomware attack on its network server affecting 1,695 individuals. Compromised PHI included names, addresses, dates of birth, Social Security and driver's license numbers, health insurance information, claims and financial information, medications, diagnoses, and additional treatment information. The CE notified HHS, affected individuals, the media, and posted substitute notice. Following OCR investigation, the CE implemented additional administrative, technical, and security safeguards.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_edec9cef234e4c51Washington State AGfiled 2024-02-15(23d gap)Candidate
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jan 23, 2024
- Raw hash
- 0b82f212110b63be5689a81e9a188e37acf2f03d88cf7e2022ff143c5ed3b9b3
Source filing
Reporting entity
- Name
- Webber Chiropractic Sports Clinic, Inc.norm: webber chiropractic sports clinic
- Industry
- Health Care Services
Victim entity
- Name
- Webber Chiropractic Sports Clinic, Inc.norm: webber chiropractic sports clinic
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,695
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTFINANCIAL
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- HHS OCR investigation; CE implemented additional administrative, technical, and security safeguards
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.