FEDERALHackingHealthcareHealthcareBusiness Associate (HIPAA)Customer Data InvolvedHEALTH_BASICIDENTITY_BASICHigh
Warner Norcross + Judd LLP
bd_ae40e08f1e80359d · schema v1 · pii pii-v1
Full breach record for Warner Norcross + Judd LLP →The business associate (BA), Warner Norcross and Judd, reported that it experienced a cyber-attack affecting the protected health information (PHI) of 255,160 individuals. The PHI involved included names, diagnoses, lab results, medications, and other treatment information. The BA notified HHS, the affected individuals, the media, and provided substitute notice. In response to the breach, the BA provided complimentary credit monitoring services and implemented additional administrative, technical, and security safeguards to better protect PHI.
Leak gap clock✗ Leak >180d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
⚠ No discovery dateThe OCR public portal omits the discovery date, so the 60-day notification clock cannot be evaluated from this source — only that the filing was submitted.
This filing is one of 9 about the same incident.View merged incident
A leak claim by lockbit2 about this victim predates this filing by 306 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_fdf043ef43ed64a2California State AGfiled 2022-08-25(1d gap)Verified
- bd_338a07619d8801bbWashington State AGfiled 2022-08-26(2d gap)Candidate
- bd_aea898af76dc2052Oregon State AGfiled 2022-08-26(2d gap)Verified
- bd_0baa95ef76b9eafbCalifornia State AGfiled 2022-08-17(7d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 9d gap
- bd_430a60ac669603beMaine State AGfiled 2022-08-17(7d gap)Verified
- bd_c137348086f577f6Montana State AGfiled 2022-08-16(8d gap)Verified
- bd_75d9e8c0060fb900Washington State AGfiled 2022-08-15(9d gap)Candidate
- bd_dfe1fbee0bbd3f4dOregon State AGfiled 2022-08-15(9d gap)Verified
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Aug 24, 2022
- Raw hash
- 5b3c00fd8ecca8680156c9b4a82c59fe22205bae0bf61a45924ebad1f21cbe56
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Warner Norcross + Judd LLPnorm: warner norcross judd
- Domain
- wnj.com
- Industry
- Business Associate
Victim entity
- Name
- Warner Norcross + Judd LLPnorm: warner norcross judd
- Domain
- wnj.com
- Industry
- Business Associate
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 255,160
- Data types
- HEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- Threat actor
- External
Compliance
- Compliance flags
- Leak >180dHHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.