- State
- MA
- Covered entity type
- Healthcare Provider
- Individuals affected
- 500
- Business associate present
- Yes
- Type of breach
- Hacking/IT Incident
- Location of breached information
- Network Server
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
Rogerson House filed a breach report indicating that a vendor, ResiDex Software, experienced a ransomware incident that affected the protected health information of 500 individuals. Initially Rogerson House reported to OCR that it was a covered entity (CE), but upon further investigation, it determined that this was an error. Because Rogerson House does not transmit any health information in electronic form in connection with a transaction for which HHS has adopted standards, it is not a CE. Therefore, the requirements of the Privacy, Security, and Breach Notification Rules do not apply.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.