San Diego American Indian Health Center
bd_f85563e15b2c58a3 · schema v1 · pii pii-v1
Full breach record for San Diego American Indian Health Center →San Diego American Indian Health Center (covered entity) reported a ransomware attack affecting PHI of 30,721 individuals. Information involved included names, addresses, dates of birth, driver's license and Social Security numbers, claims and financial information, diagnoses, lab results, medications, and other treatment information. The CE notified HHS, affected individuals, and the media; provided free credit monitoring and identity protection; and implemented additional administrative, technical, and security safeguards. OCR provided technical assistance regarding the HIPAA Rules.
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_a94c021ea3680cccCalifornia State AGfiled 2022-08-15Candidate
- bd_e95be21ff1b7aedcMontana State AGfiled 2022-08-15Candidate
- bd_faabd9f3a9183780Maine State AGfiled 2022-08-15Candidate
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Aug 15, 2022
- Raw hash
- 05201eae96b6ced62d1a975a4abfdab9613d6ec9c26a56dc4592cd60992aa5b2
Source filing
Reporting entity
- Name
- San Diego American Indian Health Centernorm: san diego american indian health center
- Industry
- Healthcare Provider
Victim entity
- Name
- San Diego American Indian Health Centernorm: san diego american indian health center
- Industry
- Healthcare Provider
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 30,721
- Data types
- PHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALHEALTH_BASIC
- Attack vector
- Ransomware
- Threat actor
- ExternalFinancial
- Regulator citations
- HHS OCR breach report; OCR technical assistance provided
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.