MSK Group
ent_aff3d2b8014b32280c3074ca
Disclosures
4
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
566,236
nationwide · HHS OCR TN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- MSK Group
- Normalized
- msk group— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- mskgroup.com
Disclosure history (4)newest first
- Massachusetts State AGas victim2018-07-05
MSK Group, P.C. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-07-05. 30 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2018-07-05
MSK Group, P.C., a physician practice group, notified the NH Attorney General of a security event discovered on May 7, 2018. Unauthorized access occurred over several months, resulting in data encryption. Notification letters were sent to 8 NH residents on July 5, 2018. Affected data included names, SSNs, DOBs, and PHI. MSK engaged consultants, reported to the FBI, and offered 1 year of identity theft protection.
- California State AGas victim2018-07-05
MSK Group, P.C., an orthopedic healthcare provider, discovered a security event on May 7, 2018, involving unauthorized access to its computer networks and data encryption. Potentially affected data includes PHI, names, addresses, dates of birth, medical record numbers, SSNs, and driver's license numbers. The organization hired consultants, reported the incident to the FBI, and offered one year of identity theft protection to affected individuals.
- TENNESSEEHHS OCRas victim2018-05-22
MSK Group PC reported to HHS on 2018-05-22 a ransomware incident affecting 566,236 individuals. On May 7, 2018, the provider discovered that ransomware had blocked access to its computer servers, which contained patient electronic protected health information (ePHI), including demographic, clinical, and health insurance details. The entity engaged an IT firm for monitoring, retrained staff, and upgraded technical safeguards.