Skip to content

Diamond Institute for Fertility and Menopause

Disclosed Apr 28, 20179 years ago14,633 affectedConfirmed

Official notice

On February 27, 2017, Diamond Institute for Fertility and Menopause LLC, the covered entity (CE), discovered that an unknown individual with a foreign internet address used a doctor’s login credentials to gain access to a computer server containing the electronic protected health information (ePHI) of patients. The breach affected 14,633 individuals and the types of ePHI involved included demographic information, lab results, and social security numbers. The CE provided timely breach notification to HHS, affected individuals, and the media. In response to the breach, the CE disabled the compromised account, forced the intruder off its systems, purchased a new firewall, replaced the server and several workstations, and improved password protocols. The CE terminated its business associate (BA) responsible for safeguarding its ePHI and hired a new BA. OCR obtained assurances that the CE implemented the corrective actions listed. In addition to the corrective actions completed, the CE is expected to perform a risk analysis, establish a risk management plan, document the unauthorized disclosure of its patients’ ePHI for accounting of disclosure purposes, execute agreements with BAs, per

What is known

People affected14,633 (as reported to HHS)
DisclosedApr 28, 2017
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
HHS archivetotalApr 28, 201714,633
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Diamond Institute for Fertility and Menopause

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.