- State
- CA
- Covered entity type
- Healthcare Provider
- Individuals affected
- 628
- Business associate present
- Yes
- Type of breach
- Unauthorized Access/Disclosure
- Location of breached information
- Electronic Medical Record
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
A former employee of a business associate (BA), Delta Billing Solutions, obtained another agent’s login information to delete, change, rearrange, and otherwise alter patient information in the Dr. Chrono billing system from April 18 to April 20, 2018. The breach affected 628 individuals who were patients of Peter J. Parker, MD, Inc., the covered entity (CE). The protected health information (PHI) involved included full names, addresses, dates of birth, some social security numbers, insurance billing information, and billing codes. The CE provided breach notification to HHS, affected individuals, and the media and also provided substitute notice. In response to the breach, BA reported the incident to law enforcement, used audit logs to verify that no downloads or exports were recorded, corrected all changes made by the former employee, and changed passwords on employee accounts to ensure no further access occurred. In addition, in response to OCR’s provision of technical assistance, the covered entity provided OCR with a revised, compliant BA agreement with the BA.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.