Rainbow Hospice Care, Inc. (WI) reported to HHS OCR on 2020-02-21 a Hacking/IT Incident (email phishing attack) affecting 2,029 individuals. ePHI exposed via Email included names, dates of birth, mailing addresses, email addresses, Social Security numbers, and medications prescribed. The CE notified affected individuals, the media, and provided substitute notice and credit monitoring. OCR obtained assurances that corrective actions — including enhanced safeguards and employee phishing-awareness retraining — were implemented. No business associate was involved.
Affected (this filing): 2,029