CLINIC SERVICE CORPORATION
ent_c1c383a92cf759fae8f7747e
Disclosures
4
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
82,331
nationwide · HHS OCR CO
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CLINIC SERVICE CORPORATION
- Normalized
- clinic service— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Illinois State AGas victim2026-02-01
CLINIC SERVICE CORPORATION filed a data-breach notice with the Illinois Attorney General in February 2026 (case 26-02-794). The register records the breach as discovered on August 17, 2025. Personal information types reported: drivers license, financial account number, medical information. Additional entities named: CHILDREN'S EYE PHYSICIANS. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Massachusetts State AGas victim2026-01-28
Clinic Service Corporation, a financial collection services provider for healthcare clients including Children’s Eye Physicians, notified affected individuals of unauthorized access to their network. The incident occurred between August 10 and August 17, 2025, and was discovered on August 17, 2025. Affected data may include names, addresses, phone numbers, email addresses, payment card information, dates of birth, and protected health information such as medical diagnoses, treatment info, patient IDs, and insurance details. The company engaged forensic specialists, notified law enforcement, and is offering complimentary credit monitoring and identity protection services.
- COLORADOHHS OCRas victim2026-01-28
Clinic Service Corporation reported to HHS on 2026-01-28 a Hacking/IT Incident affecting 82331 individuals. Breached information located on Network Server. Business associate present.
- Nebraska State AGas victim2026-01-27
Clinic Service Corporation notified Nebraska AG on Jan 27, 2026, regarding unauthorized network access between Aug 10-17, 2025, discovered Aug 17, 2025. Unnamed actors accessed patient/employee PII (names, SSNs, DOBs, addresses). Notices sent Jan 2, 2026. Response included law enforcement notification, policy review, and complimentary credit monitoring via Cyberscout/TransUnion.