DisclosureLens
WISCONSINSocial EngineeringHealthcareHealthcarePhishingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)Government IDHealth (basic)Financial accountHighResolved

THE MEDICAL COLLEGE OF WISCONSIN, INC.

bd_7aa641482dbfaf18 · schema v1 · pii pii-v1

Severity

High

Discovered

—

Filed

Nov 17, 2017

To disclose

—

Affected

9,500

Linked

4 filings

Confidence

97%
Full breach record for THE MEDICAL COLLEGE OF WISCONSIN, INC. →7 incidents on file

The Medical College of Wisconsin, Inc. reported to HHS on 2017-11-17 a Hacking/IT Incident affecting 9,500 individuals. Several employees were victims of an email phishing attack; compromised email accounts contained PHI including names, dates of birth, addresses, Social Security numbers, medical record numbers, health insurance information, financial information, and treatment information. Breached information was located in Email. The CE implemented administrative and technical safeguards, retrained staff, and notified HHS, individuals, and media. OCR obtained corrective-action assurances.

HIPAA clock✓ HHS notified
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
⚠ No discovery dateThe OCR public portal omits the discovery date, so the 60-day notification clock cannot be evaluated from this source — only that the filing was submitted.

Incident timeline — partial

? — ?

Breach window unknown

Nov 17, 2017

Filed

No interval is drawn: no breach start or discovery date is on record for this filing.

This filing is one of 4 filings about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Washington State AGNov 17 · first
Montana State AGNov 17 · first
HHS OCRNov 17 · first · this page

Pattern: first filing Nov 17 (WA), last Nov 30 (OR) — a 13-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.