Summit Eye & Optical
ent_93f6ecf03eb1382af913d665
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
5,727
nationwide · HHS OCR NJ
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Summit Eye & Optical
- Normalized
- summit eye optical— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Maine State AGas victim2023-06-07
Summit Eye & Optical reported a data breach affecting 5,413 individuals, which occurred and was discovered on March 4, 2023. The incident was described as an external system breach (hacking), resulting in the compromise of names and Social Security Numbers. Affected individuals were notified on May 18, 2023, and offered 12 months of identity theft protection services through IDX.
- New Hampshire State AGas victim2023-05-30
Summit Eye & Optical notified the NH Attorney General on May 22, 2023, of a data incident discovered on March 4, 2023. An unknown person gained unauthorized access to computer systems, potentially viewing PHI and personal info of 3 NH residents. Summit conducted an internal investigation, enhanced security measures, and provided 12 months of identity monitoring services to affected individuals.
- Massachusetts State AGas victim2023-05-19
Summit Eye & Optical reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-05-19. 35 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2023-05-18
Summit Eye and Optical reported a data breach to the Indiana Attorney General. The breach occurred on 2023-03-04 and was reported on 2023-05-18. 2 Indiana residents were affected. 5,413 individuals affected in total.
- NEW JERSEYHHS OCRas victim2023-05-01
Summit Eye & Optical (NJ) reported to HHS on 2023-05-01 a Hacking/IT Incident (ransomware attack) affecting 5,727 individuals. Breached information located on a Network Server. PHI involved included diagnoses and potentially Social Security numbers. The CE notified HHS, affected individuals, and the media, posted substitute notice, provided identity monitoring services, implemented additional safeguards, and retrained staff.