Skip to content

Pediatric Group

Disclosed Aug 21, 201511 years ago10,000 affectedConfirmed

Official notice

On August 21, 2015, an unknown entity hacked into the covered entity's (CE) electronic database utilizing a Crypto Locker computer virus, and the virus attached to some of the CE's Portable Document Format (PDF) files which contained patients’ names, dates of birth, clinical information, and other personal identifiers. The virus then blocked the CE's access to the aforementioned PDF files and the CE received an email message demanding a $500.00 ransom in order to gain access to the locked PDF files. Approximately 10,000 individuals were affected by the breach. Upon discovering the breach, the CE conducted a breach risk assessment which indicated that there was a low overall probability that protected health information (PHI) was compromised, and therefore, breach notification to individuals and the media was not required. The CE reported the breach incident to the Internet Crime Complaint Center, a division of the Federal Bureau of Investigations. To prevent similar breaches from happening in the future, the CE retained a computer forensic firm to assist with the analysis of the ransomware incident, and installed anti-malware products on all its computers. The CE trained staff on i

What is known

People affected10,000 (as reported to HHS)
DisclosedAug 21, 2015
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Pediatric Group (Healthcare Provider, IL)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalAug 21, 201510,000
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Pediatric Group

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.