Legacy Community Health Services
Disclosed Jun 15, 20206 years ago228,009 affectedConfirmed
The covered entity (CE), Legacy Community Health Services, reported that an employee was the victim of an email phishing scheme that affected the electronic protected health information (ePHI) of 3,076 patients. The ePHI involved included names, dates of birth, Social Security numbers, diagnoses, medications prescribed, and lab results. The CE notified HHS, affected individuals, and the media. As a result of the breach, the CE retrained its workforce members on the proper methods of identifying and responding to fraudulent email communications.
What is known
| People affected | 228,009 (as reported to HHS) |
|---|---|
| Disclosed | Jun 15, 2020 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Legacy Community Health Services (Healthcare Provider, TX)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jun 15, 2020 | 19,000 |
| HHS archivetotal | Sep 25, 2020 | 228,009 |
| HHS archivetotal | Nov 20, 2020 | 3,076 |
History of this record
- 2026-09-25 · disclosed: 2020-09-25 to 2020-06-15 · backfill source
- 2026-09-25 · records: 3076 to 228009 · backfill source
- 2026-09-25 · disclosed: 2020-11-20 to 2020-09-25 · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.