InterAct of Michigan, Inc. reported to HHS on 2018-08-07 a Hacking/IT Incident affecting 1,290 individuals. An employee was the victim of a phishing attack, enabling an unauthorized individual to access the employee's email account. Exposed PHI included names, addresses, dates of birth, treatment history, prescription information, and in some cases SSNs. The CE notified affected individuals, offered credit monitoring, and implemented corrective actions including credential resets, disabling email forwarding, enhanced log review, and phishing awareness retraining. Breached information located on Email.
Affected (this filing): 1,290