On March 16, 2025, unauthorized individuals exploited a vulnerability in NCCTC’s cloud-based file management system, gaining access to personal information stored on their platform. Quick action was taken to secure systems and resolve the issue by March 19, 2025.
The breach at Northern California Children’s Therapy Center exposed sensitive data including Referring Provider Information, Child Information, Parent and Caregiver Information, and Family and Provider Concerns, putting individuals at risk of identity theft and privacy violations.
Implications of children's healthcare information being compromised extend beyond typical data breaches, as children are particularly vulnerable to long-term identity theft schemes due to their inability to monitor credit reports independently.
Healthcare organizations serving pediatric populations must balance accessible care coordination with robust cybersecurity measures to protect sensitive information. Legal rights and options may be available for affected individuals under state and federal privacy laws such as HIPAA.