DisclosureLens
ARKANSASHackingHealthcareHealthcareBusiness Associate (HIPAA)Customer Data InvolvedSupply Chain (3P Vendor)Health (basic)Identity (basic)Medium

ENT and Allergy Center

bd_91c2e15bf8472a7e · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

May 31, 2016

To disclose

Affected

16,200

Confidence

50%
Full breach record for ENT and Allergy Center

Hackers attacked the servers of business associate Bizmatics, resulting in unauthorized access to the electronic medical records of approximately 16,200 patients of ENT and Allergy Center. The breach was reported to HHS on 2016-05-31. The compromised information included patient demographic and clinical data. OCR opened an investigation into the covered entity regarding its business associate agreement and a separate investigation into the business associate, Bizmatics.

HIPAA clock HHS notified
no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
⚠ No discovery dateThe OCR public portal omits the discovery date, so the 60-day notification clock cannot be evaluated from this source — only that the filing was submitted.

Incident timeline — partial

? — ?

Breach window unknown

May 31, 2016

Filed

No filing yet · watching

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed16,200 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.