DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

HealthSouth Rehabilitation Hospital of Round Rock notifies 1,359 patients whose PHI was on laptop stolen from employee’s car

Posted on December 22, 2015 by Dissent

ROUND ROCK, Texas – HealthSouth Rehabilitation Hospital of Round Rock, previously Reliant Rehabilitation Hospital Central Texas, is currently notifying potentially affected individuals that a laptop containing unsecured protected health information was stolen from the trunk of an employee’s vehicle on or around Oct. 21, 2015. The information on the laptop varied by individual but may have included an individual’s name, address, date of birth, Social Security number, phone number, insurance number, diagnosis, referral ID number or medical record number. At this time, the hospital is working to notify the 1,359 potentially affected individuals via letter.

HealthSouth Round Rock discovered the theft on Oct. 26, 2015 and promptly filed a report with the City of Austin Police Department, undertook efforts to locate and recover the stolen laptop, and conducted a detailed and time consuming forensic process to determine what information may have been on the laptop and to whom that information related.

The laptop was password protected and, at this time, HealthSouth Round Rock has no evidence the information on the laptop has been accessed or used for purposes of identity theft or otherwise. The hospital’s information systems are not accessible from the stolen laptop.

The hospital was recently acquired by an affiliate of HealthSouth on Oct. 1, 2015. While it is HealthSouth’s policy to encrypt all laptops, the laptop at issue which was used at the Reliant hospital prior to the acquisition was not encrypted. As part of HealthSouth’s post-acquisition integration process, all Reliant laptops were required to be returned and exchanged for encrypted HealthSouth laptops. The Reliant laptop at issue, however, was stolen before being returned to HealthSouth.

HealthSouth is committed to the safety and privacy of its patients and genuinely regrets any hardships or inconveniences this incident may have caused. The hospital has begun sending notification letters to all potentially affected individuals. The notification letter encourages potentially affected individuals to be vigilant for signs of possible identity theft and provides that HealthSouth is offering free credit monitoring and identity theft protection services through its incident response provider. Potentially affected individuals are encouraged to visit the website www.identitytheft.gov, which provides a step-by-step process to respond to, and recover from, incidents of identity theft. Individuals with questions or in need of assistance regarding this incident may contact the incident response provider at 1-800-545-2111, Monday through Friday from 8 a.m. to 5 p.m. CT.

About HealthSouth Rehabilitation Hospital of Round Rock
Acquired by HealthSouth on Oct. 1, 2015, HealthSouth Rehabilitation Hospital of Round Rock is a 75-bed inpatient rehabilitation hospital that offers comprehensive physical rehabilitation services. The hospital is located at 1400 Hesters Crossing in Round Rock and on the Web at www.healthsouthroundrock.com.

About HealthSouth
HealthSouth is one of the nation’s largest providers of post-acute healthcare services, offering both facility-based and home-based post-acute services in 34 states and Puerto Rico through its network of inpatient rehabilitation hospitals, home health agencies, and hospice agencies. HealthSouth can be found on the web at www.healthsouth.com

Source: HealthSouth Corporation


Related:

  • Safaricom-Backed M-TIBA Victim of a Possible Data Breach Affecting Millions of Kenyans
  • Another plastic surgery practice fell prey to a cyberattack that acquired patient photos and info
  • NY: Gloversville hit by ransomware attack, paid ransom
  • Two U.K. teenagers appear in court over Transport of London cyber attack
  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • Protected health information of 462,000 members of Blue Cross Blue Shield of Montana involved in Conduent data breach
Category: Health DataTheftU.S.

Post navigation

← Feds charge ex-Alabama IRS employee, 3 others in $1 million ID scheme
[Hello Kitty Update] Security Advisory: Corrected a vulnerability involving personal information of SanrioTown.com members →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • CrowdStrike catches insider feeding information to ScatteredLapsus$Hunters
  • Two suspected Scattered Spider hackers plead not guilty over Transport for London cyberattack
  • Attleboro investigating ‘cybersecurity incident’ impacting city’s IT systems
  • Fired techie admits sabotaging ex-employer, causing $862K in damage
  • Threat actors have reportedly launched yet another campaign involving an application connected to Salesforce
  • Russian hackers target IVF clinics across UK used by thousands of couples
  • US, allies sanction Russian bulletproof hosting services for ransomware support
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • Large medical lab in South Africa suffers multiple data breaches
  • Report released on PowerSchool cyber attack

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Cole v. Quest Diagnostics: The Third Circuit Weighs in on Pixels, Privacy, and Medical Data
  • Closing the Privacy Gap: HIPRA Targets Health Apps and Wearables
  • Researchers claim ‘largest leak ever’ after uncovering WhatsApp enumeration flaw
  • CIPL Publishes Discussion Paper Comparing U.S. State Privacy Law Definitions of Personal Data and Sensitive Data
  • India’s Digital Personal Data Protection Act 2023 brought into force

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.