UCM Medical Group Experiences Data Breach via Third-Party Vendor

The cybersecurity incident occurred in July 2024.

By HFT Staff


UCM Medical Group Sub, LLC posted this notice because a third-party vendor, Nationwide Recovery Services, Inc. (NRS), notified them on April 8, 2025, that they experienced a cybersecurity incident in July 2024 that may have resulted in unauthorized access to certain personal information. At this time, the vendor has informed UCM that they are not aware of any misuse of the personal information potentially affected by this incident. 

UCM is providing separate written notification to affected individuals for whom they have mailing addresses. They are posting this notice for those affected individuals for whom they do not have mailing addresses. 

From July 5, 2024, to July 11, 2024, an unauthorized individual gained access to NRS systems and obtained information from certain files and folders. Upon learning of this, NRS took steps to terminate unauthorized access and make enhancements to further secure their systems. NRS recently completed a review and analysis of the potential impacts and determined that personal information may have been involved. 

NRS has indicated that the affected information may have contained the following types of personal information: first and last name, address, date of birth, Social Security number, financial account information, and/or medical-related information that may have been provided to them to perform financial services on their behalf. 

UCM has terminated their relationship with Nationwide Recovery Services, Inc. NRS has confirmed they implemented additional security measures to prevent the occurrence of a similar event in the future. 



May 29, 2025


Topic Area: Information Technology , Security


Recent Posts

Technological Readiness: The Missing Construction Milestone

A new building can be complete by most measures but still not be technologically or operationally ready.


From Cooling Towers to Cost Savings: Hospital Seizes Power-Saving Opportunity

Case study: Arkansas hospital increases energy efficiency by diagnosing cooling tower issues and treating its entire mechanical system.


Community Health Center of Buffalo Reports Data Breach

CHCB is working to review its existing data privacy policies and procedures.


CRAB Alert: The EVS Role in Preventing Infection

CRAB is a Gram-negative bacterium that causes bloodstream infections, ventilator-associated pneumonia, surgical wound infections and meningitis in hospitalized patients.


Why Hospital Waiting Rooms Aren't Going Away

Despite advances in technology, thoughtfully designed reception spaces continue to evolve.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

 
 
 
 

Healthcare Facilities Today membership includes free email newsletters from our facility-industry brands.

Facebook   Twitter   LinkedIn   Posts

Copyright © 2023 TradePress. All rights reserved.