MisuseData MishandlingEmployee Data InvolvedCustomer Data InvolvedPHIIDENTITY_BASICLowContained
University Muslim Medical Association
bd_7d83fe37f1fb9293 · schema v1 · pii pii-v1
Full breach record for University Muslim Medical Association →University Muslim Medical Association (UMMA) reported that a former employee sent a secured file containing patient names and dates of birth to their personal email address. The incident was discovered on July 1, 2020, with the breach occurring on June 29, 2020. UMMA obtained a signed statement from the former employee confirming the file was destroyed and implemented policy updates to prevent recurrence. No unauthorized access or use of the data was indicated.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_d6521d73a290e129HHS OCRfiled 2020-09-29Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-194598
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 29, 2020
- Raw hash
- f9ee8e20102072c760a5e8730fae60bb1c774eb23d59b61c47efc732858af13f
Reporting entity
- Name
- University Muslim Medical Associationnorm: university muslim medical
- Domain
- ummaclinic.org
Victim entity
- Name
- University Muslim Medical Associationnorm: university muslim medical
- Domain
- ummaclinic.org
Incident
- Discovered
- Jul 1, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIIDENTITY_BASIC
- Attack vector
- Insider
- Threat actor
- Internal
- Initial access
- insider_action
Compliance
- Time to disclose
- 13 weeks(90 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.