Rainbow Children's Clinic
Disclosed Oct 3, 20169 years ago33,698 affectedConfirmed
On August 3, 2016, a hacker accessed the covered entity's (CE) computer system and subsequently launched a ransomware attack, which began encrypting data stored on the CE's computer servers. The CE immediately shut down its computer system to prevent loss of patient information, and promptly launched an investigation. The CE retained an independent computer forensic expert to assist with the investigation and discovered that some patient records were irretrievably deleted. The CE provided breach notification to HHS, affected individuals, and the media. The CE did not receive any indication that any personal data was misused. However, out of an abundance of caution, the CE offered affected patients identity protection services. Following the breach, the CE installed new anti-virus protection software on all machines operating on its network. It also implemented a policy that specifies staff will be trained on the following topics: how to identify/handle potential scams/hoaxes; how protection software operates; good security practices for web browsing, sharing files, email attachments; risks of installing unsupported software, and; what to do when anti-virus and mal-ware protection s
What is known
| People affected | 33,698 (as reported by the organization) |
|---|---|
| Disclosed | Oct 3, 2016 |
| Happened | Aug 1, 2016 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2016 data breach report: Rainbow Children's Clinicin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Rainbow Children's Clinic (Healthcare Provider, TX)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| Indiana AGresidents of IN | Oct 3, 2016 | 1 |
| HHS archivetotal | Oct 3, 2016 | 33,698 |
History of this record
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · summary: empty to On August 3, 2016, a hacker accessed the covered entity's (CE) computer system and subsequently launched a ransomware attack, which began encrypting data stored on the CE's computer servers. The CE immediately shut down its computer system · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.