Community Psychiatric Clinic
ent_bd3374c8f4b9bb8c9ec89297
Disclosures
5
HHS OCR · State AG · 2 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
6,641
nationwide · HHS OCR WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Community Psychiatric Clinic
- Normalized
- community psychiatric clinic— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- WASHINGTONHHS OCRas victim2019-08-15
Community Psychiatric Clinic reported to HHS on 2019-08-15 a Hacking/IT Incident affecting 5,866 individuals. Breached information located on Email. The incident involved an email phishing scheme that exposed ePHI including names, SSNs, addresses, diagnoses, lab results, medications, and financial data. The clinic retrained staff and implemented technical safeguards.
- WASHINGTONHHS OCRas victim2019-08-15
Community Psychiatric Clinic reported to HHS on 2019-08-15 a Hacking/IT Incident affecting 3030 individuals. Breached information located on Email. The incident involved an email phishing scheme that exposed electronic protected health information (ePHI), including names, SSNs, addresses, birthdates, diagnoses, lab results, medications, claims, and financial data. The clinic retrained staff on identifying fraudulent emails and implemented additional technical safeguards.
- WASHINGTONHHS OCRas victim2019-08-15
Community Psychiatric Clinic (WA) reported to HHS on 2019-08-15 a Hacking/IT Incident affecting 6,641 individuals. The CE was the victim of an email phishing scheme compromising ePHI including names, Social Security numbers, addresses, birthdates, diagnoses/conditions, lab results, medications, claims information, and financial data. Following OCR investigation, the CE retrained workforce on identifying fraudulent emails and implemented additional technical safeguards. Breached information located in Email systems.
- Washington State AGas victim2019-07-27
Community Psychiatric Clinic (CPC) notified the Washington AG of two security incidents involving unauthorized access to employee Office365 accounts. The first occurred on March 12, 2019; the second on May 8, 2019, involving a fraudulent wire transfer attempt. Access was via Outlook Web. Data potentially exposed included names, DOBs, SSNs, diagnosis/treatment info, and financial data. 6,600 Washington residents notified. CPC engaged forensic investigators, reset passwords, and offered 12 months of credit monitoring.
- Montana State AGas victim2019-07-26
Community Psychiatric Clinic notified individuals of a multi-stage phishing incident in March and May 2019 compromising four Office365 accounts. Unauthorized access may have exposed PHI, SSNs, and financial data. The clinic changed passwords, engaged forensic investigators, and offered 12 months of credit monitoring. No data exfiltration was confirmed.