Skip to content

Zoe Therapy Services

Disclosed Feb 23, 20224 years ago1,100 affectedConfirmed

Official notice

The covered entity (CE), Zoe Therapy Services, reported that several employees experienced an email phishing incident that compromised the protected health information (PHI) of 1,100 individuals. The PHI involved included names, dates of birth, diagnoses, lab results, medications, and other treatment information. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. In its mitigation efforts, the CE implemented additional administrative, technical, and security safeguards to better protect its PHI. Staff were retrained on email security precautions and the proper methods of identifying fraudulent email communications.

What is known

People affected1,100 (as reported to HHS)
DisclosedFeb 23, 2022
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Zoe Therapy Services (Healthcare Provider, VA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalFeb 23, 20221,100
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Zoe Therapy Services

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.