MedEvolve, Inc. reported to HHS on 2018-07-10 a Unauthorized Access/Disclosure affecting 230,572 individuals. Breached information located on Network Server. The breach resulted from the misconfiguration of an FTP server, exposing PHI including names, SSNs, and account numbers. MedEvolve paid a $350,000 settlement and agreed to a corrective action plan including risk analysis, policy updates, and enhanced training.
Affected (this filing): 230,572