[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f25mgz6g6ke8nf":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":33,"seoTitle":34,"seoTitleEn":35,"seoDescription":34,"seoDescriptionEn":36,"logoUrl":37,"isVerified":4,"isSensitive":4,"isSpamList":38,"isMalware":38,"company":39},"6a709d95e0f5ac3eac707b45","RockyMountainGastroenterology2024","Rocky Mountain Gastroenterology 2024 Data Breach","rocky-mountain-gastroenterology-2024","rockymountaingastro.com","2024-09-13T00:00:00.000Z","2026-08-03T13:54:29.888Z","HHS OCR, independent healthcare breach reporting, and court records","https:\u002F\u002Focrportal.hhs.gov\u002Focr\u002Fbreach\u002Fbreach_report.jsf",[14,16,17],"https:\u002F\u002Fwww.hipaajournal.com\u002Frocky-mountain-gastroenterology-associates-data-breach\u002F","https:\u002F\u002Fwww.classaction.org\u002Fmedia\u002Fdavis-et-al-v-rocky-mountain-gastroenterology-associates-pllc-settlement.pdf",366491,"known",null,"people","High",[24,25,26,27,28,29,30,31,32],"Names","Physical addresses","Dates of birth","Patient account numbers","Medical record numbers","Social Security numbers","Health insurance identification numbers","Diagnoses","Treatment information","\u003Cp>\u003Cstrong>The 2024 Rocky Mountain Gastroenterology data breach\u003C\u002Fstrong> concerns suspicious activity detected in the Colorado healthcare provider's computer network on September 13, 2024. The investigation found that an unauthorized actor accessed files containing patient information and may have copied some of them. The event affected 366,491 patients.\u003C\u002Fp>\u003Cp>Rocky Mountain Gastroenterology Associates provides gastroenterology services in the Denver area. The incident involved personal and protected health information stored on the organization's network servers.\u003C\u002Fp>\u003Ch2>How did the Rocky Mountain Gastroenterology data breach happen?\u003C\u002Fh2>\u003Cp>The organization identified suspicious activity in its network on September 13, 2024 and began an investigation to determine the scope. The review found that a threat actor had gained unauthorized access to certain files and may have copied them.\u003C\u002Fp>\u003Cp>Public sources do not disclose the exact initial-access date, how long the actor remained in the network, or the method used. September 13 is therefore the detection date, not a claimed intrusion-start date. The actor's identity and any exploited vulnerability were also not confirmed.\u003C\u002Fp>\u003Ch2>What information may have been affected?\u003C\u002Fh2>\u003Cp>The information varied by person. Disclosed categories included names, addresses, dates of birth, patient account numbers, medical record numbers, Social Security numbers, and health insurance identification numbers.\u003C\u002Fp>\u003Cp>Diagnosis and treatment information may also have been present in the affected files. Not every category applied to every patient, so recipients should rely on the fields identified in their individual notice.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The active breach list maintained by the U.S. Department of Health and Human Services Office for Civil Rights reports 366,491 affected individuals. HHS classifies the event as a hacking or IT incident involving a healthcare provider's network server.\u003C\u002Fp>\u003Cp>Later court records also connect a class of approximately 366,491 people to the same September 2024 event. This is the reported affected-person total; overlapping descriptions of the same scope were not added together.\u003C\u002Fp>\u003Ch2>What risks can this information create?\u003C\u002Fh2>\u003Cp>Social Security numbers combined with dates of birth and addresses can facilitate identity theft or fraudulent account applications. Patient and insurance identifiers can create risks of fraudulent healthcare claims or medical identity misuse.\u003C\u002Fp>\u003Cp>Diagnosis and treatment details also present a significant privacy risk. An attacker may impersonate a healthcare provider or insurer and use person-specific details to make a message more convincing, so unexpected requests should be verified through an independent contact channel.\u003C\u002Fp>\u003Ch2>How did Rocky Mountain Gastroenterology respond?\u003C\u002Fh2>\u003Cp>The organization said it implemented additional safeguards and began mailing individual notification letters on November 13, 2024. A later class-action proceeding ended in a settlement without an admission of liability by the parties.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients can monitor credit reports and financial accounts for unfamiliar activity and consider a credit freeze or fraud alert if a Social Security number was involved. Suspicious transactions should be reported directly to the relevant institution.\u003C\u002Fp>\u003Cp>Health-insurance explanations, patient portals, and medical bills should be checked for services that were not received. Before opening links or sharing personal information in a message claiming to come from the organization or an insurer, the contact channel should be verified independently through the official website.\u003C\u002Fp>","","Rocky Mountain Gastroenterology Data Breach (366.5 Thousand People Affected)","The Rocky Mountain Gastroenterology data breach affected 366,491 people and may have exposed identity, medical, and insurance information.","\u002Fuploads\u002Flogo\u002Frocky-mountain-gastroenterology-official.png",false,{"name":40,"sector":41,"country":42,"website":43,"websiteArchiveUrl":34,"websiteStatus":34,"websiteCheckedAt":20},"Rocky Mountain Gastroenterology Associates, PLLC","Healthcare","United States","https:\u002F\u002Fwww.rockymountaingastro.com\u002F"]