Skip to content

Allergy & Asthma Medical Group of the Bay Area

Disclosed Jun 2, 20206 years ago1,894 affectedConfirmed

Official notice

The covered entity (CE), Allergy & Asthma Medical Group of the Bay Area, Inc., reported that an intruder broke into its office and stole three laptop computers. This breach affected the electronic protected health information (ePHI) of 1,894 individuals. The ePHI involved included names, dates of birth, health insurance information, and treatment information. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. In response to the breach, the CE enhanced its physical safeguards, revised its HIPAA security procedures, retrained its workforce members, and implemented additional technical safeguards to better protect its ePHI. OCR provided technical assistance to the CE and obtained assurances that the CE implemented the corrective actions noted.

What is known

People affected1,894 (as reported to HHS)
DisclosedJun 2, 2020
HappenedApr 27, 2020
AttackLost or stolen device
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
California AGresidents of CAJun 2, 2020
HHS archivetotalJun 2, 20201,894
History of this record
  • 2026-09-25 · attack: unknown to lost-device · backfill source
  • 2026-09-25 · data_types: [] to ["names","health"] · backfill source
  • 2026-09-25 · records_basis: empty to hhs · backfill source
  • 2026-09-25 · records: empty to 1894 · backfill source
  • 2026-09-25 · summary: empty to The covered entity (CE), Allergy & Asthma Medical Group of the Bay Area, Inc., reported that an intruder broke into its office and stole three laptop computers. This breach affected the electronic protected health information (ePHI) of 1,89 · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (California AG), confirmed by California AG. Record counts are as reported. Not legal advice.

Everything about Allergy & Asthma Medical Group of the Bay Area

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.