[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f0q3EgUnsiKiWlm_be1nQGHFsvYdiK2-5XL50EdAo-dU":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"company":11,"breachDate":15,"addedDate":16,"modifiedDate":17,"pwnCount":18,"totalRecords":18,"dataClasses":19,"description":25,"source":26,"isVerified":4,"isSpamList":27,"isSensitive":4,"processingStatus":28,"logoUrl":29,"contentUpdatedAt":17,"hasEnglishDescription":4,"severity":30},"6a677add3453a54b550d4dff","FloridaRetinaCenter2026","Florida Retina Center 2026 Data Breach","florida-retina-center-2026","retinaandmacula.com",{"name":12,"sector":13,"country":14,"website":10},"Florida Retina Center","Healthcare","United States","2026-01-30T00:00:00.000Z","2026-07-27T15:35:57.422Z","2026-07-27T16:11:13.025Z",13652,[20,21,22,23,24],"Full names","Dates of birth","Social Security numbers","Driver's license numbers","Medical information","\u003Cp>\u003Cstrong>The Florida Retina Center 2026 data breach\u003C\u002Fstrong> was a security incident targeting the network environment of the Bonita Springs eye-care practice. According to the organization's official notice, it detected the event on or about January 30, 2026. The investigation found that an unauthorized third party may have accessed or acquired certain personal information.\u003C\u002Fp>\n\u003Cp>The U.S. Department of Health and Human Services Office for Civil Rights HHS\u002FOCR portal lists 13,652 affected people for Saurabh N. Patel, M.D. – Florida Retina Center. The federal row classifies the event as a Network Server Hacking\u002FIT Incident.\u003C\u002Fp>\n\u003Ch2>How Was the Florida Retina Center Incident Verified?\u003C\u002Fh2>\n\u003Cp>The primary source is the “Notice of Data Security Incident” PDF dated May 26, 2026 and hosted on the organization's retinaandmacula.com domain. It directly describes the detection date, forensic review, possible access or acquisition, affected data categories, security response, twelve-month protection offer, and assistance line.\u003C\u002Fp>\n\u003Cp>The second source is the public HHS\u002FOCR federal breach row confirming the 13,652-person count, healthcare-provider status, incident type, and network-server location. The third is ClaimDepot's summary, which brings the official PDF and HHS link together under the same event and helps compare the core dates.\u003C\u002Fp>\n\u003Ch2>Incident Timeline and What the Dates Mean\u003C\u002Fh2>\n\u003Cp>Florida Retina Center says it detected on or about January 30, 2026 that it was the target of a data security incident and moved quickly to secure its network environment. The incident date is based on the earliest technical activity that can be verified from public sources. That choice avoids inventing an unsupported access beginning.\u003C\u002Fp>\n\u003Cp>The organization completed its extensive review with a third-party forensic incident response firm on May 19 and published the notice on May 26. The HHS row carries a May 11, 2026 submission date, which precedes the completion date stated in the PDF, but both sources identify the same organization and event scope. The difference was not treated as evidence of a new or second attack.\u003C\u002Fp>\n\u003Ch2>What Information May Have Been Involved?\u003C\u002Fh2>\n\u003Cp>According to the official notice, the possible fields are name, date of birth, Social Security number, driver's license number, and medical information. The organization specifically says the information combination differed by individual and not everyone had every listed element exposed. A general category list therefore cannot replace the scope stated in an individual's notification letter.\u003C\u002Fp>\n\u003Cp>The public document does not divide “medical information” into more detailed subcategories. Recipients should rely on their individual letter for the data types relevant to them. Limited public detail does not weaken confirmation that the incident occurred; it defines the boundary of what can responsibly be stated.\u003C\u002Fp>\n\u003Ch2>How Should the Affected-Person Count Be Interpreted?\u003C\u002Fh2>\n\u003Cp>13,652 is the affected-person total published by HHS\u002FOCR for Florida Retina Center; it is not a count of emails, files, or individual medical fields. The affected-person or record count published by the official source represents the reported scope of the incident. It does not mean that every disclosed data category applied to every person. Because the organization says the data combination varied, the number should not be read as proof that all 13,652 people had a Social Security number or every other category involved.\u003C\u002Fp>\n\u003Cp>The affected-person or record count published by the official source represents the reported scope of the incident. It does not mean that every disclosed data category applied to every person.\u003C\u002Fp>\n\u003Ch2>What Can People Do About Identity and Medical-Information Risks?\u003C\u002Fh2>\n\u003Cp>Social Security and driver's license numbers can support new-account fraud, impersonation, and targeted scams. People whose individual letter lists these fields can review credit reports, consider a fraud alert or credit freeze when appropriate, and report unfamiliar new accounts or inquiries directly to the relevant financial institution.\u003C\u002Fp>\n\u003Cp>Medical-information exposure can create medical identity-theft risk and make phishing messages more convincing. Insurance explanations, patient-portal alerts, and healthcare bills should be checked for unfamiliar services. A message containing a real name or health detail does not authenticate a sender claiming to represent Florida Retina Center; users should reach the practice through its known website and phone information instead of following unexpected links.\u003C\u002Fp>\n\u003Ch2>How Should This Incident Be Interpreted?\u003C\u002Fh2>\n\u003Cp>Florida Retina Center said it secured the network after detection, investigated with a specialized forensic response firm, and reviewed and enhanced technical safeguards to help prevent a similar incident. It also arranged twelve months of complimentary credit monitoring and identity-theft protection for potentially affected people. At the time of the official notice, the practice said it had received no reports of information misuse or related identity theft.\u003C\u002Fp>\n\u003Cp>The absence of reported misuse does not eliminate future risk. Recipients should follow the unique enrollment instructions and recommendations in their individual letter and use the organization's current official channel for questions. A LeakData event page does not prove that every visitor was affected; it transparently summarizes the verified incident, disclosed scope, and practical security steps.\u003C\u002Fp>","Official Florida Retina Center notice, HHS\u002FOCR breach report, and ClaimDepot",false,"completed","\u002Fuploads\u002Flogo\u002Fretinaandmacula_com.jpg","Medium"]