Spartanburg Rehabilitation Institute
ent_7c26edbd3eff1863dc20eabe
Disclosures
3
State AG · HHS OCR · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
4,506
nationwide · HHS OCR SC
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Spartanburg Rehabilitation Institute
- Normalized
- spartanburg rehabilitation institute— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- sri.ernesthealth.com
Disclosure history (3)newest first
- South Carolina State AGas victim2024-04-02
Spartanburg Rehabilitation Institute notified affected individuals of a data security incident where unauthorized access to its IT network occurred between Jan 16 and Feb 4, 2024. The incident involved current and former employee information, including names and potentially other PII. The institute isolated systems, engaged a third-party cybersecurity firm, and contacted law enforcement. Affected individuals were offered one year of complimentary credit monitoring and identity theft insurance.
- SOUTH CAROLINAHHS OCRas victim2024-03-29
Spartanburg Rehabilitation Institute reported to HHS on 2024-03-29 a Hacking/IT Incident affecting 4506 individuals. Breached information located on Network Server. The incident involved a ransomware attack encrypting PHI (names, DOB, SSN, driver's license, claims, diagnoses, medications). The entity notified HHS, individuals, and media, offered credit monitoring, and implemented security safeguards.
- Illinois State AGas victim2024-03-01
SPARTANBURG REHABILITATION INSTITUTE filed a data-breach notice with the Illinois Attorney General in March 2024 (case 24-03-117). The register records the breach as discovered on January 16, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.