Wells Pharmacy Network
Disclosed Aug 10, 20188 years ago10,000 affectedConfirmed
On August 10, 2018, the covered entity (CE), Wells Pharmacy Network, submitted a breach report that identified several security concerns and a possible IT security incident. In response to OCR’s investigation, the CE investigated and determined that the alleged incident was a temporary decrease in server speed due to an incorrectly scheduled data transfer between the CE’s operating system and its sales management platform and there no evidence of a breach. However, in response to the IT manager’s concerns and OCR’s investigation, the CE migrated to software that allowed for encryption of electronic communications, developed and implemented new privacy and security policies and procedures, and updated its HIPAA training program. OCR provided technical assistance related to the Security Rule requirement for risk analyses and obtained assurances that the CE implemented the voluntary corrective actions listed above.
What is known
| People affected | 10,000 (as reported to HHS) |
|---|---|
| Disclosed | Aug 10, 2018 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Wells Pharmacy Network (Healthcare Provider, FL)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Aug 10, 2018 | 10,000 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.