Codman Square Health Center Reports Data Breach with Federal Government Following Ransomware Attack

Console and Associates, P.C.
Contact

On March 1, 2023, Codman Square Health Center (“Codman”) filed a notice of data breach with the U.S. Department of Health and Human Services Office for Civil Rights after learning that a ransomware attack targeting the company’s IT system compromised confidential patient information. Based on the company’s official filing, the incident resulted in an unauthorized party gaining access to consumers’ names, addresses and protected health information. After confirming that consumer data was leaked, Codman began sending out data breach notification letters to all individuals who were impacted by the recent data security incident.

When employees of Codman Square Health Center asked for your personal information, you didn’t hesitate to provide the company with everything it asked for. Understandably, you knew Codman Square Health Center to be a reputable healthcare provider and trusted the company to keep your information secure. However, as we’ve discussed in recent posts, companies sometimes fail to take the necessary precautions to keep consumer data secure. This isn’t to say that Codman was necessarily negligent in how it handled your information; however, that remains a possibility. Data breach lawyers are investigating the Codman Square Health Center data breach to determine if victims may have a legal claim against the company.

What We Know So Far About the Codman Square Health Center Breach

The available information regarding the Codman Square Health Center breach comes from the company’s filing with the U.S. Department of Health and Human Services Office for Civil Rights, as well as a “Notice of Data Security Event” posted on the Codman website. According to these sources, on November 28, 2022, Codman learned that it had been the victim of an apparent ransomware attack. In response, Codman began working with third-party cybersecurity specialists to investigate the incident in hopes of determining what, if any, consumer data was leaked as a result.

The Codman investigation confirmed the suspicious network activity was indeed a ransomware attack. More specifically, the company learned that between November 23, 2022 and November 27, 2022, an unauthorized party was able to access and exfiltrate files containing confidential patient information from the company’s IT network.

Upon discovering that sensitive consumer data was made available to an unauthorized party, Codman Square Health Center began to review the affected files to determine what information was compromised and which consumers were impacted. While the breached information varies depending on the individual, it may include your name, address and protected health information, such as your medical record number, medical diagnoses, other treatment information, and insurance claims information.

On March 1, 2023, Codman Square Health Center sent out data breach letters to all individuals whose information was compromised as a result of the recent data security incident.

More Information About Codman Square Health Center

Founded in 1979, Codman Square Health Center is a healthcare provider located in Dorchester, Massachusetts. Codman provides a wide range of services, including primary care, eye care, dental care, urgent care, and behavioral health care to more than 23,000 patients each year. Codman Square Health Center employs more than 290 people and generates approximately $40 million in annual revenue.

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations. Attorney Advertising.

© Console and Associates, P.C.

Written by:

Console and Associates, P.C.
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

Console and Associates, P.C. on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide