RevSpring, Inc. (a business associate) reported to HHS OCR on 2014-01-06 a breach of type 'Other' affecting approximately 3,000 individuals. A printing error caused patients to receive billing statements containing other patients' PHI. Breached information located on Paper/Films. PHI exposed included names, account numbers, balances owed, procedure codes, procedure descriptions, providers' names, and dates of services. The CE obtained assurances from RevSpring that additional safeguards would be implemented; OCR reviewed the CE's policies and procedures.
Affected (this filing): 3,000