Brandywine Counseling & Community Services, Inc
ent_802cc6f644f623cc7601890e
Disclosures
7
HHS OCR · State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
11,852
nationwide · HHS OCR DE
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Brandywine Counseling & Community Services, Inc
- Normalized
- brandywine counseling community— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- DELAWAREHHS OCRas victim2020-07-17
Brandywine Counseling & Community Services, Inc. (DE) reported to HHS OCR on 2020-07-17 an Unauthorized Access/Disclosure affecting 4,139 individuals. The covered entity's business associate impermissibly mailed PHI — including names and treatment information — to wrong recipients due to processing errors. Breached information was located in Paper/Films. The CE revised its policies and procedures as corrective action; OCR obtained assurances of implementation.
- New Hampshire State AGas victim2020-05-14
Brandywine Counseling & Community Services, Inc. notified the NH Attorney General of a ransomware incident discovered on Feb 10, 2020. The breach affected 2 NH residents, exposing PHI, SSNs, and DOB. Notifications began May 13, 2020. Response included forensic investigation, law enforcement notification, and credit monitoring services.
- Massachusetts State AGas victim2020-05-13
Brandywine Counseling and Community reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-05-13. 16 Massachusetts residents were affected. The report records the breach type as electronic.
- DELAWAREHHS OCRas victim2020-04-10
Brandywine Counseling & Community Services, Inc. (DE) reported to HHS on 2020-04-10 a ransomware attack affecting ePHI on a Network Server for 11,852 individuals. Exposed data included names, addresses, Social Security numbers, dates of birth, drivers' license numbers, diagnoses, conditions, financial information, and other medical/treatment information. The CE notified HHS, affected individuals, the media, and posted substitute notice. Additional technical and security safeguards were implemented.
- Delaware State AGas victim2020-04-10
Brandywine Counseling & Community Services, Inc. (BCCS), a Delaware nonprofit healthcare provider, disclosed a ransomware incident discovered on February 10, 2020. The attack affected 3,022 Delaware residents, exposing names, dates of birth, health insurance info, limited clinical treatment data, and for 2,805 individuals, Social Security numbers and/or driver's license numbers. BCCS engaged forensic investigators and law enforcement, secured the network, and began notifying affected individuals on April 10, 2020, offering one year of credit monitoring via Kroll.
- Illinois State AGas victim2020-01-01
BRANDYWINE COUNSELING & COMMUNITY SERVICES filed a data-breach notice with the Illinois Attorney General during 2020 (case 20-261). The register records the breach as discovered on May 20, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas victim2020-01-01
BRANDYWINE COUNSELING & COMMUNITY SERVICES filed a data-breach notice with the Illinois Attorney General during 2020 (case 20-200). The register records the breach as discovered on February 10, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.