Compassion Care Hospice Las Vegas
Disclosed Dec 14, 20178 years ago1,128 affectedConfirmed
On October 28, 2017, the covered entity (CE), Compassion Care Hospice Las Vegas, LLC, discovered that an unknown individual gained access to its computer network and server containing 1,128 patients' protected health information (PHI), specifically demographic and clinical information. Although there was no evidence of access to or exfiltration of PHI, the CE could not rule out that PHI was at risk of compromise. Out of an abundance of caution, the CE provided breach notification to HHS, affected individuals, and the media. Following the incident, the CE changed all administrator and user credentials to its computer system, enabled intrusion prevention software and blocked all suspicious internet protocol (IP) addresses, disabled and removed all remote connection software, blocked its public IP address so that it could no longer receive inbound connections, and took both servers offline permanently. OCR obtained assurances that the CE implemented the corrective actions noted above.
What is known
| People affected | 1,128 (as reported to HHS) |
|---|---|
| Disclosed | Dec 14, 2017 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Compassion Care Hospice Las Vegas (Healthcare Provider, NV)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Dec 14, 2017 | 1,128 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.