Northeast Surgical Group, PC
ent_5f5b1d28e2ebc6b62d94eb7c
Disclosures
2
HHS OCR enforcement · HHS OCR · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
15,298
nationwide · HHS OCR MI
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Northeast Surgical Group, PC
- Normalized
- northeast surgical— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- FEDERALHHS OCR enforcementas victim2025-01-15
HHS OCR settled a HIPAA investigation with Northeast Surgical Group, P.C. for $10,000 following a ransomware attack in March 2023 that encrypted and exfiltrated PHI of 15,298 patients. The settlement, part of OCR's Risk Analysis Initiative, cited NESG's failure to conduct a compliant risk analysis. NESG agreed to a two-year corrective action plan.
- MICHIGANHHS OCRas victim2023-03-06
Northeast Surgical Group, PC reported to HHS on 2023-03-06 a Hacking/IT Incident affecting 15298 individuals. Breached information located on Network Server. The incident involved a ransomware attack that encrypted and exfiltrated protected health information. NESG failed to conduct a compliant risk analysis and settled with OCR for $10,000.