Elizabeth L. Brown, MD, PLLC
bd_f4daa514d3d46357 · schema v1 · pii pii-v1
Full breach record for Elizabeth L. Brown, MD, PLLC →Elizabeth L. Brown, MD, PLLC reported to HHS on 2017-05-12 a ransomware attack affecting 8,436 individuals. The attack, which occurred around March 14 and March 28, 2017, compromised the entity's billing, scheduling, and electronic medical record systems located on a network server. The breached information included names, addresses, dates of birth, medical details, driver's license and social security numbers, and insurance claim data. In response, the entity investigated with third-party experts, implemented enhanced security measures like unique credentials and revised access levels, and planned to migrate to a cloud-based EMR system. OCR reviewed the entity's risk analysis and corrective actions.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 14, 2017
Begins
May 12, 2017
Filed
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.