Rainbow Children's Clinic
ent_8b73cb227f0e9ffb173541e5
Disclosures
2
State AG · HHS OCR · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
33,698
nationwide · HHS OCR TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Rainbow Children's Clinic
- Normalized
- rainbow children s clinic— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- South Carolina State AGas victim2016-10-12
Rainbow Children's Clinic, a pediatric clinic in Texas, disclosed a ransomware attack on August 3, 2016. A hacker accessed the system, encrypted data, and irretrievably deleted some patient records. Impacted data included names, addresses, DOBs, SSNs, and medical/payment info for patients and guarantors. The clinic shut down systems, hired forensic experts, and provided 12 months of Equifax credit monitoring. Notification letters were sent in September 2016.
- TEXASHHS OCRas victim2016-10-03
Rainbow Children's Clinic (TX) reported to HHS OCR on 2016-10-03 a Hacking/IT Incident affecting 33,698 individuals. On August 3, 2016, a hacker accessed the clinic's network servers and launched a ransomware attack that began encrypting patient data; some patient records were irretrievably deleted. The CE shut down its system immediately, retained a forensic expert, notified HHS/individuals/media, and offered identity protection services. No misuse of personal data was identified. Post-incident, the CE deployed new anti-virus software and implemented staff security-training policies. OCR obtained assurances of corrective action. Breached information was located on Network Server.