- State
- PA
- Covered entity type
- Healthcare Provider
- Individuals affected
- 5,872
- Business associate present
- No
- Type of breach
- Hacking/IT Incident
- Location of breached information
- Desktop Computer
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
A dentist with the covered entity (CE), Brodhead Dental Center, encountered a suspicious pop-up window on his work computer while he was online making a personal transaction. There is no indication that any patients’ protected health information (PHI) was accessed as a result of this incident. Following this incident, the CE adopted encryption technology, improved password security, updated its security plan, and implemented technical safeguards. It also sanctioning the involved workforce member and improved its policies and procedures. OCR obtained assurances that the CE implemented the corrective actions noted above.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.