CCRM Dallas-Fort Worth
Disclosed Nov 30, 20187 years ago1,117 affectedConfirmed
OCR opened an investigation of the covered entity (CE), CCRM – Fort Worth, after it reported that an unauthorized user gained access to a former workforce member’s email account. The incident affected the electronic protected health information (ePHI) of approximately 1,117 individuals and included demographic, financial, and clinical information. Upon discovering the breach, the CE disabled the affected email account and implemented new technical safeguards relating to its email platform. The CE provided breach notification to HHS, affected individuals and the media and also posted substitute notice. Further, the CE offered one year of free identity theft services to affected individuals. OCR obtained assurances that the CE implemented the listed corrective actions.
What is known
| People affected | 1,117 (as reported to HHS) |
|---|---|
| Disclosed | Nov 30, 2018 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): CCRM Dallas-Fort Worth (Healthcare Provider, TX)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Nov 30, 2018 | 1,117 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.