Wolfe Clinic
ent_49868cf99a33f002a4b4bfd6
Disclosures
10
State AG · HHS OCR · 7 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
530,299
nationwide · HHS OCR IA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Wolfe Clinic
- Normalized
- wolfe clinic— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- Montana State AGas victim2022-09-19
Wolfe Clinic, P.C. notified Montana patients that Eye Care Leaders (ECL), a third-party EMR provider, suffered a data breach on or around Dec 4, 2021. ECL's myCare Integrity platform was accessed by an unauthorized party who deleted databases. Patient PII and PHI may have been exposed, though no evidence of actual access was found. Wolfe Clinic offered Kroll identity monitoring services.
- Massachusetts State AGas victim2022-09-19
Wolfe Clinic, P.C. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-09-19. 98 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2022-09-19
Wolfe Clinic, P.C. notified patients that their data may have been exposed due to a security incident at their third-party vendor, Eye Care Leaders, on December 4, 2021. An unauthorized party accessed the myCare Integrity platform and deleted databases and system configuration files. Eye Care Leaders stopped the access immediately. While there was no evidence that Wolfe Clinic's patient records were accessed, the possibility of exposure of PHI and PII (including SSNs) could not be ruled out. Identity monitoring services were offered.
- IOWAHHS OCRas victim2022-09-09
Wolfe Clinic, P.C. reported to HHS on 2022-09-09 a Hacking/IT Incident affecting 530,299 individuals. Breached information located on Electronic Medical Record. The business associate was the victim of the breach. PHI included names, addresses, DOBs, SSNs, diagnoses, lab results, and medication info.
- Massachusetts State AGas victim2021-07-06
Wolfe Clinic, P.C. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-07-06. 68 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2021-06-29
Wolfe Clinic, P.C. experienced a cybersecurity attack on February 8, 2021, involving unauthorized third-party access to its computer network. The incident potentially exposed patients' names, addresses, dates of birth, Social Security numbers, and protected health information. The clinic engaged forensic investigators and implemented enhanced security measures. Credit monitoring was offered to affected individuals.
- New Hampshire State AGas victim2021-06-28
Wolfe Clinic, P.C. (Wolfe Eye Clinic) reported a ransomware attack on February 8, 2021, where an unauthorized third party attempted to infiltrate its network and demand ransom. The clinic detected the incident and secured its network, engaging forensic investigators. The full scope was realized on May 28, 2021. The investigation concluded June 8, 2021, revealing exposure of patient names, addresses, DOB, SSNs, and PHI. 21 New Hampshire residents were notified on June 29, 2021, and offered credit monitoring.
- Maine State AGas victim2021-06-28
Wolfe Clinic, P.C. experienced an external system breach on February 8, 2021, which was discovered the same day. The breach affected 16 Maine residents, compromising their names and Social Security numbers. Notification to the affected individuals occurred on June 29, 2021, and the company offered 12 months of credit monitoring and identity theft recovery services through IDX.
- IOWAHHS OCRas victim2021-04-09
Wolfe Clinic, P.C. (Iowa healthcare provider) reported to HHS OCR on 2021-04-09 a Hacking/IT Incident affecting 499,779 individuals. Breached information was located on a Network Server. PHI compromised included names, addresses, dates of birth, Social Security numbers, diagnoses, medications, and other treatment information. The CE notified HHS, affected individuals, and media, and implemented additional administrative and technical safeguards in response.
- Illinois State AGas victim2021-01-01
WOLFE CLINIC, P.C. filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-241). The register records the breach as discovered on February 8, 2021. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
Supply-chain cascadesreviewed and confirmed
- Wolfe Clinic’s filing is one of at least 7 in the Eye Care Leaders supply-chain incident (2022).