Boulder Neurosurgical and Spine Associates
ent_e2b005d9dfd8b96e6c005592
Disclosures
3
State AG · HHS OCR · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
21,450
nationwide · HHS OCR CO
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Boulder Neurosurgical and Spine Associates
- Normalized
- boulder neurosurgical and spine associates— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- New Hampshire State AGas victim2021-12-02
Boulder Neurosurgical and Spine Associates detected unauthorized access to a business email account on September 21, 2021. The incident potentially exposed protected health information (PHI), including names, dates of birth, and medical records, for three New Hampshire residents. No evidence of specific data misuse was found. The organization engaged incident response experts, secured the account, notified affected patients and regulators, and offered 12 months of credit monitoring.
- COLORADOHHS OCRas victim2021-11-29
Boulder Neurosurgical and Spine Associates reported to HHS on 2021-11-29 a Hacking/IT Incident affecting 21,450 individuals. Breached information located on Email. An employee was the victim of an email phishing attack which affected the protected health information (PHI) of 21,450 individuals. The PHI involved included names, dates of birth, diagnoses, lab results, medications prescribed, and other treatment information. The CE closed its business; the investigation was subsequently closed.
- Montana State AGas victim2021-11-24
Boulder Neurosurgical and Spine Associates notified patients of a September 21, 2021 business email compromise. Unauthorized access to an email account may have exposed PHI including names, DOBs, and medical records. The company engaged forensic investigators, secured the account, and offered credit monitoring.