Harvard Eye Associates
ent_853faeb2fccdd767951f4822
Disclosures
2
State AG · HHS OCR · 1 jurisdiction
Incidents
1
filings grouped by incident
Max affected reported
29,982
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Harvard Eye Associates
- Normalized
- harvard eye associates— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- 🐻California State AGas victim2021-02-16
Harvard Eye Associates notified patients and employees of a data breach involving a third-party online data storage vendor. Hackers accessed the vendor's system as early as October 24, 2020; the vendor discovered the intrusion and notified Harvard Eye on January 15, 2021. The hackers demanded ransom; the vendor paid and the data was returned. Compromised data included patient PHI, employee PII (SSNs, bank account numbers, government IDs), and affiliated individuals' information. IDX identity protection services were offered.
- CALIFORNIAHHS OCRas victim2021-02-08
HARVARD EYE ASSOCIATES reported to HHS on 2021-02-08 a Hacking/IT Incident affecting 29,982 individuals. Breached information located on Network Server. The incident involved a business associate cyber-attack exposing ePHI including names, addresses, DOB, and health insurance data. The covered entity provided credit monitoring and implemented additional technical safeguards.