Skip to content

Guidance Center

Disclosed Apr 5, 20224 years ago23,104 affectedConfirmed

Official notice

The covered entity (CE), The Guidance Center, reported that several employees were victims of an email phishing attack that compromised the protected health information (PHI) of 23,104 individuals. The PHI involved included names, addresses, dates of birth, drivers’ license and Social Security numbers, financial information, diagnoses/conditions, lab results, and medication information. The CE notified HHS, affected individuals, the media, and provided substitute notice. In its mitigation efforts, the CE provided complimentary credit monitoring and identity theft services to those affected and implemented additional administrative and technical safeguards to better protect its sensitive data. Staff were retrained on email security. OCR provided technical assistance to the CE.

What is known

People affected23,104 (as reported to HHS)
DisclosedApr 5, 2022
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Guidance Center (Healthcare Provider, AZ)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalApr 5, 202223,104

Other breaches at Guidance Center

BreachAffected
Disclosed Oct 28, 2019Oct 28, 20196 years agoHacking1,622
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Guidance Center

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.