- State
- FL
- Covered entity type
- Healthcare Provider
- Individuals affected
- 500
- Business associate present
- No
- Type of breach
- Theft
- Location of breached information
- Laptop
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
Clinical Pathology Laboratories Southeast (CPLS), a covered entity (CE), reported that a laptop was stolen out of an employee’s car. The breach involved 19,763 individuals. The protected health information (PHI) involved included social security numbers, driver’s license numbers, financial information, medical information, and health insurance information. In response to the breach, the CE terminated the laptop’s access to its network, retrained employees, revised its security incident and mobile device policies, and adopted a number of technical safeguards including full disk encryption and remote wipe technologies. The CE provided breach notification to HHS, affected individuals, the media, and posted substitute notice on its website. OCR has obtained assurances that the CE implemented the corrective actions above.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.