Skip to content

RCCA MSO

Disclosed Jul 23, 20197 years ago102,000 affectedConfirmed

Official notice

The business associate (BA), RCCA MSO, LLC, reported that several employees were the victims of an email phishing scheme that affected the electronic protected health information (ePHI) of 102,000 individuals. The ePHI involved included names, health insurance information, medications prescribed, Social Security numbers, drivers’ license numbers, and financial information. The CE notified HHS, affected individuals, the media, and posted substitute notice to its website. The CE also provided complimentary credit monitoring and identity restoration services. Following the breach, the CE implemented additional administrative, technical, and security safeguards to better protect its ePHI and retrained its workforce members on the proper methods of identifying and responding to fraudulent email communications.

What is known

People affected102,000 (as reported to HHS)
DisclosedJul 23, 2019
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): RCCA MSO (Business Associate, NJ)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalJul 23, 2019102,000
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about RCCA MSO

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.