Robert Smith DMD
Disclosed Jan 22, 20188 years ago1,500 affectedConfirmed
The covered entity (CE), Robert Smith DMD PC, doing business as Smith Dental, discovered on November 7, 2017, that access to its computer network server, which contains electronic protected health information (ePHI), was blocked by ransomware. The incident potentially affected the ePHI of 2,859 individuals, including demographic, clinical, financial, and health insurance information. Based on the nature and effect of the ransomware, the CE was unable to determine whether ePHI had been copied or transferred outside of the network. The CE provided breach notification to HHS, affected individuals; however, this was untimely. OCR provided substantial technical assistance regarding the CE’s breach notification obligations. In response to the breach, the CE sanctioned its manager/privacy officer for allowing security safeguards to lapse, designated a new Privacy & Security Officer, and replaced its former information technology (IT) vendor with two IT service providers. The CE substantially enhanced its information system technology and technical safeguards, adopted new HIPAA policies and procedures, and employed a new HIPAA training program. Workforce members were retrained by April 24,
What is known
| People affected | 1,500 (as reported to HHS) |
|---|---|
| Disclosed | Jan 22, 2018 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Robert Smith DMD (Healthcare Provider, TN)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jan 22, 2018 | 1,500 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.