Genesis Rehabilitation Services
ent_20996b604c0af35a31aecc18
Disclosures
4
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,167
nationwide · HHS OCR PA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Genesis Rehabilitation Services
- Normalized
- genesis rehabilitation— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Massachusetts State AGas victim2013-11-29
Genesis Rehabilitation Services reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2013-11-29. 26 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2013-11-22
Genesis Rehabilitation Services reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2013-11-22. 26 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2013-11-22
Genesis Rehabilitation Services notified NH AG of a data security incident involving lost USB drives containing PHI of 739 patients and PII of 25 NH residents. Discovered Sept 3, 2013. Data included names, DOBs, SSNs, and medical info. No evidence of misuse. GRS provided credit monitoring and identity theft insurance.
- PENNSYLVANIAHHS OCRas victim2013-11-01
Genesis Rehabilitation Services (PA) reported to HHS on 2013-11-01 a Loss/Theft incident affecting 1,167 individuals. Two unencrypted flash drives were stolen from a staff member's office. Breached ePHI included names, dates of birth, treatment and diagnosis information, medical insurance ID numbers, and in some instances, social security numbers. The CE notified HHS, affected individuals, and the media, provided free credit monitoring, retrained staff on encryption policies, and revised its HIPAA policies following OCR investigation.