Lutheran Community Services Northwest
bd_94ed2f20f395493e · schema v1 · pii pii-v1
Full breach record for Lutheran Community Services Northwest →Lutheran Community Services Northwest (WA) reported to HHS OCR on 2012-05-29 a Theft affecting 756 individuals. Two desktop computers and a USB drive were stolen during a break-in at the CE's premises. Breached information was located on Desktop Computer and Other Portable Electronic Device. ePHI included phone numbers, email addresses, state ID card information, demographic, financial, clinical, diagnostic, and treatment information. The CE installed new locks, updated HIPAA policies, encrypted mobile devices, migrated backup server off-site, and stopped saving ePHI locally.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- May 29, 2012
- Raw hash
- c48244d7f31ecb2ebeb633cf8ec13030086b8e3e387db06e7ae5d47baed974c4
Source filing
Reporting entity
- Name
- Lutheran Community Services Northwestnorm: lutheran community services northwest
- Industry
- Health Care Services
Victim entity
- Name
- Lutheran Community Services Northwestnorm: lutheran community services northwest
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 756
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- External
- Regulator citations
- HHS OCR technical assistance provided; CE revised policies and procedures per OCR guidance
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.