GAMalwareHealthcareHealthcareRansomwareBusiness Associate (HIPAA)Data EncryptedCustomer Data InvolvedPHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALHEALTH_BASICCriticalResolved
SYNERGY HomeCare
bd_60b196394ca9f99c · schema v1 · pii pii-v1
Full breach record for SYNERGY HomeCare →Synergy Healthcare Services (GA), a HIPAA Business Associate, reported a ransomware attack affecting PHI of 296,956 individuals. PHI included names, DOB, addresses, driver's license and SSNs, diagnoses, medications, lab results, financial/claims information, and other treatment information. Notifications were sent to HHS, affected individuals, and the media; substitute notice was provided. Credit monitoring was offered and additional administrative, technical, and security safeguards were implemented.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_1664820794ed528eMaine State AGfiled 2023-07-31Candidate
- bd_4924a611ea1ef2aaVermont State AGfiled 2023-07-27(4d gap)Verified
- bd_5257e9b6b57e9079Montana State AGfiled 2023-07-26(5d gap)Candidate
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jul 31, 2023
- Raw hash
- fb3b6e1a218fbefdacbe26231d46f7e369780cf9dcd15a95614e92887469bab8
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- SYNERGY HomeCarenorm: synergy homecare
- Domain
- synergyhomecare.com
- Industry
- Healthcare
Victim entity
- Name
- SYNERGY HomeCarenorm: synergy homecare
- Domain
- synergyhomecare.com
- Industry
- Healthcare
- Industry
- Healthcaresource default
Incident
- Discovered
- May 16, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 296,956
- Data types
- PHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALHEALTH_BASIC
- Attack vector
- Ransomware
- Threat actor
- ExternalFinancial
- Third party
- via Synergy Healthcare Services
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: May 16, 2023→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.