LCP Transportation
Disclosed Jan 1, 20197 years ago70,000 affectedConfirmed
The business associate (BA), LCP Transportation, Inc., reported that an employee was the victim of an email phishing scheme that affected the electronic protected health information (ePHI) of 54,528 individuals. The ePHI involved included names, addresses, birthdates, and diagnoses and clinical information. In response to the breach, the BA strengthened its technical safeguards, revised its policies and procedures, and retrained its staff. OCR provided technical assistance to the BA regarding the HIPAA Rules.
What is known
| People affected | 70,000 (as reported by the organization) |
|---|---|
| Disclosed | Jan 1, 2019 |
| Happened | Jul 29, 2018 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2019 data breach report: LCP Transportationin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): LCP Transportation (Business Associate, IN)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| Indiana AGresidents of IN | Jan 1, 2019 | 70,000 |
| HHS archivetotal | Mar 15, 2019 | 54,528 |
History of this record
- 2026-09-25 · sector: other to health · backfill source
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · summary: empty to The business associate (BA), LCP Transportation, Inc., reported that an employee was the victim of an email phishing scheme that affected the electronic protected health information (ePHI) of 54,528 individuals. The ePHI involved included n · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.