Aprendamos Family of Services
Disclosed Jan 23, 20251 year ago1,996 affectedConfirmed
The covered entity (CE), Aprendamos Family of Services, reported that a workforce member exported patients’ protected health information (PHI) on to an excel spreadsheet and emailed it to her personal email account prior to her departure from the CE. The PHI involved included names, addresses, dates of birth, diagnoses and conditions of approximately 1,996 individuals. The CE notified HHS, the affected individuals and the media. In response to the breach, the CE implemented additional HIPAA training and additional technical safeguards.
What is known
| People affected | 1,996 (as reported to HHS) |
|---|---|
| Disclosed | Jan 23, 2025 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Aprendamos Family of Services (Healthcare Provider, NM)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jan 23, 2025 | 1,996 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.