Borgess Medical Center
bd_6b0680cf24736714 · schema v1 · pii pii-v1
Full breach record for Borgess Medical Center →Borgess Medical Center reported an impermissible disclosure of protected health information affecting 700 patients due to an error in a mail merge process on April 13, 2015. The breach resulted in the mixing of patient names and addresses, exposing their names, medications, and association with Borgess Rheumatology. In response, the center implemented a new data verification process, retrained workforce members, and added quality checks for spreadsheets with patient information.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 13, 2015
Begins
Feb 5, 2016
Filed
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.