Regal Medical Group,Lakeside Medical Organization, ADOC Acquisition, & Greater Covina Medical Group
Disclosed Feb 1, 20233 years ago3,388,856 affectedConfirmed
The covered entity (CE), Regal Medical Group, Inc., Lakeside Medical Organization, A Medical Group, Inc., ADOC Acquisition Co., & Greater Covina Medical Group, Inc., reported that it experienced a ransomware incident that affected the protected health information (PHI) of approximately 3,388,856 individuals who were patients of the CE. The PHI involved included names, addresses, dates of birth, Social Security numbers, health plan member numbers, phone numbers, treatment information, diagnoses and treatments, lab test results, medications, and radiology reports. The CE notified HHS, the affected individuals, the media, and posted substitute notice on its website. In response to the breach, the CE provided free credit monitoring to the affected individuals, and implemented additional administrative, technical, and security safeguards to better protect its PHI. During the investigation, OCR provided the CE with technical assistance.
What is known
| People affected | 3,388,856 (as reported to HHS) |
|---|---|
| Disclosed | Feb 1, 2023 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Regal Medical Group,Lakeside Medical Organization, ADOC Acquisition, & Greater Covina Medical Group (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Feb 1, 2023 | 3,388,856 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.