Hollister Family Dental & Implant Center, a dental practice based in Hollister, California, has reported a data breach affecting approximately 3,809 patients. Dental and medical practices are entrusted with sensitive personal and health information, and when that information is exposed, the practice has a responsibility to notify affected individuals and take steps to help them protect themselves from potential harm.
Hollister Family Dental & Implant Center’s Data Breach Investigation
Hollister Family Dental & Implant Center reported the incident to the U.S. Department of Health and Human Services’ Office for Civil Rights (HHS OCR), which maintains a public database of breaches affecting the protected health information of 500 or more individuals, as required under the HIPAA Breach Notification Rule. According to that filing, the breach affected approximately 3,809 patients of the practice.
As of this writing, Hollister Family Dental & Implant Center has not publicly released a detailed account of how the breach occurred, when it was discovered, or the full scope of what was accessed. Dental and healthcare practices have increasingly become targets for cybercriminals in recent years, in part because patient records typically combine several categories of sensitive data — identity information, contact details, insurance information, and treatment history — that can be valuable on the black market or useful for committing identity theft and insurance fraud.
Under HIPAA and various state data breach notification laws, covered entities like dental practices are required to notify affected patients, and in breaches affecting 500 or more individuals, to notify HHS OCR and, in many cases, local media outlets as well. These notification requirements exist specifically so that patients can take timely steps to protect their identities and finances once they learn they may be affected.
Investigations into incidents like this one often continue well after the initial notification, as forensic reviews can reveal additional details about the scope of the compromise, the method used by the attackers, and whether any of the exposed data has been misused. Patients who receive a notification letter from Hollister Family Dental & Implant Center, or who otherwise learn they may be affected, should read any correspondence from the practice carefully and take advantage of any complimentary credit monitoring or identity protection services that may be offered.
Because breaches affecting healthcare providers can expose a combination of identity and medical information not typically found together in other industries, affected individuals may face a heightened risk of both financial fraud and medical identity theft, where a criminal uses a victim’s information to obtain medical services or prescriptions in their name. Vigilance in reviewing financial statements, insurance explanation-of-benefits notices, and credit reports is especially important following a healthcare data breach.
When Did This Breach Occur?
Hollister Family Dental & Implant Center has not yet made public the specific date the breach occurred or when it was first discovered. The incident was reported to HHS OCR, whose database reflects breaches affecting 500 or more individuals as they are submitted, but the underlying date of compromise is not always disclosed at the time of initial reporting. This page will be updated if the practice releases further details about the timeline of the incident.
What Information Was Breached?
Hollister Family Dental & Implant Center has not yet publicly disclosed a complete, itemized list of every data element involved in this breach. Given the nature of the information typically held by a dental practice, the personal and health information at risk may include patient names in combination with other information such as contact details, dates of service, treatment information, and health insurance or billing details. Patients should watch for an official notification letter from the practice, which should include a more specific description of what information was involved in their individual case.
What You Can Do
If you have received a notification letter from Hollister Family Dental & Implant Center, or believe you may have been affected by this breach, there are several steps you can take to help protect yourself:
- Read any notification letter carefully and take advantage of any free credit monitoring or identity protection services offered.
- Regularly review your financial account statements and health insurance explanation-of-benefits notices for any unfamiliar activity.
- Consider placing a fraud alert or credit freeze with the three major credit bureaus.
- Obtain a free copy of your credit report at annualcreditreport.com and review it for accounts you don’t recognize.
- Be cautious of unsolicited phone calls, emails, or texts referencing this breach, as scammers often use news of a breach to attempt further fraud.
File a Data Breach Lawsuit Against Hollister Family Dental & Implant Center
If your personal or health information was compromised in the Hollister Family Dental & Implant Center data breach, you may be entitled to compensation. Companies and healthcare providers that collect sensitive patient data have a legal obligation to protect it, and when that obligation is not met, affected patients may have grounds to pursue legal action.
Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.