Ascend Healthcare Systems provided medical transcription services to Children’s NationalMedicalCenter, and the misconfiguration permitted transcription documents held in the network that stores and transfers computer files to be located through search engines, including Google. Certain transcriptions were searchable from Feb. 19 to Feb. 25.
Those documents may have contained patient names, birthdates, medications and physician notes regarding diagnoses and treatments. The documents did not contain billing or financial information, credit card numbers, Social Security numbers or banking information.
The incident affects patients whose dictated notes were sent to Ascend for transcription between May 1, 2014, and June 23, 2014.
Children’s National asked Ascend to remove the information from the Internet. The health system stopped doing business with Ascend June 23, 2014.
The health system says it is unaware any of the information has been accessed or misused.
More articles on data breaches:
HHS’ OCR to develop guide on preparing for, responding to ransomware
Florida Medical Clinic notifies 1,000 patient of data breach after Greenway Health mistake
Data breach at Iowa hospital affects 1,620
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.