- State
- FL
- Covered entity type
- Healthcare Provider
- Individuals affected
- 13,000
- Business associate present
- No
- Type of breach
- Hacking/IT Incident, Theft, Unauthorized Access/Disclosure
- Location of breached information
- Network Server
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
Two former employees of the covered entity (CE) took a list of patient information to a competitor’s office. The list contained the names, dates of birth, addresses and phone numbers of 13,000 patients—every active and inactive patient treated by the CE. The CE ceased operations on October 31, 2013, and eventually filed for voluntary dissolution with the Florida Secretary of State effective July 27, 2015. OCR obtained assurances that the CE is no longer in business.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.