Herron Business Law
Disclosed Nov 20, 20205 years ago1,419 affectedConfirmed
Herron Business Law, the business associate (BA), reported that it impermissibly disclosed the electronic protected health information (ePHI) of 1,419 individuals. The ePHI involved included names and treatment information. In response to the breach, the CE provided HIPAA training to its employees and legal representatives. OCR provided the BA with technical assistance on the Breach Notification Rules and the Privacy Rule provisions pertaining to business associate agreements.
What is known
| People affected | 1,419 (as reported to HHS) |
|---|---|
| Disclosed | Nov 20, 2020 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Herron Business Law (Business Associate, PA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Nov 20, 2020 | 1,419 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.