The covered entity (CE), LifeLong Medical Care, reported that its business associate (BA) was the victim of a ransomware attack that compromised the protected health information (PHI) of 115,448 individuals. The PHI involved included names, dates of birth, Social Security numbers, financial information, diagnoses/conditions, lab results, medications prescribed, and other treatment information. The CE notified HHS, affected individuals, the media, and provided affected individuals with complimentary credit monitoring services. In response to the breach, the CE strengthened its administrative and security safeguards. OCR provided the CE with technical assistance regarding the HIPAA Breach Notification Rule.
2026-09-25 · attack: unknown to hacking · backfill source
2026-09-25 · data_types: [] to ["names","health"] · backfill source
2026-09-25 · records_basis: empty to hhs · backfill source
2026-09-25 · records: empty to 115448 · backfill source
2026-09-25 · disclosed: 2021-08-27 to 2021-08-25 · backfill source
2026-09-25 · summary: empty to The covered entity (CE), LifeLong Medical Care, reported that its business associate (BA) was the victim of a ransomware attack that compromised the protected health information (PHI) of 115,448 individuals. The PHI involved included names, · backfill source
2026-09-25 · discovered: empty to 2020-11-24 · backfill source