HIPAA PHI Discovery Pilot
This assessment identified 81 potential PHI exposures across 1 scanned sources. 38 HIGH severity findings require immediate attention, including Social Security Numbers (SSN), Medical Record Numbers (MRN), and unencrypted identifiers. 43 MEDIUM findings include email addresses and phone numbers associated with patient records.
| Source | Type | Files Scanned | Findings |
|---|---|---|---|
| GreySec PHI Scanner — Test Data | FILESYSTEM | 5 | 81 |
| Type | Severity | Text | Location |
|---|---|---|---|
| ssn | HIGH | 10001,John M. Whitfield,1983-07-15,573-44-9281,4421 Elm Stre | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | 10003,James O. O'Brien,1955-11-08,819-77-3341,892 Vine Stree | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | 10004,Maria Elena Rodriguez,1990-04-30,622-11-0099,7715 Oak | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | 10006,Lisa Ann Nakamura,1988-01-03,441-28-7763,556 Pine Rd, | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | 10007,Michael T. O'Sullivan,1979-06-19,733-90-1122,188 Cresc | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | nan: BP 142/88, HR 76, Temp 98.4 | SSN: 662-41-0039 on file | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| ssn | HIGH | "ssn": "573-44-9281", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| ssn | HIGH | "ssn": "819-77-3341", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| ssn | HIGH | "ssn": "622-11-0099", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| ssn | HIGH | "ssn": "441-28-7763", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| ssn | HIGH | 1, "name": "John M. Whitfield", "ssn": "573-44-9281", "mrn": | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
| ssn | HIGH | 2, "name": "James O. O'Brien", "ssn": "819-77-3341", "mrn": | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
| ssn | HIGH | name": "Maria Elena Rodriguez", "ssn": "622-11-0099", "mrn": | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
| mrn | HIGH | 555-0174,jwhitfield@email.com,MRN-77441,Type 2 Diabetes,Aetn | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 555-9912,schen@midwestmed.org,MRN-33018,Hypertension,Cigna-4 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 3) 555-2288,jobrien@gmail.com,MRN-66109,Chronic Back Pain,Un | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 10,mrodriguez@texashealth.net,MRN-91503,Anxiety Disorder,BCB | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 55-0044,rwashington@email.com,MRN-55221,COPD,Medicaid-119204 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 555-3390,lnakamura@uwnmed.org,MRN-88712,Asthma,Premera-66173 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | 555-8711,msullivan@hrcare.org,MRN-22909,Arthritis,Regence-44 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | ) 555-2200,apetit@nhsmail.org,MRN-77660,Breast Cancer Stage | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | | Patient: Thomas W. Brennan (MRN-44817) | DOB: 1952-02-14 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | s | Patient: Beverly K. Moss (MRN-99120) | DOB: 1978-08-07 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | Patient: Patricia D. Nguyen (MRN-33881) | DOB: 1965-12-01 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | Patient: David R. Szymanski (MRN-77201) | MRN 77201 | DOB: 1 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | id R. Szymanski (MRN-77201) | MRN 77201 | DOB: 1970-03-17 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | | Patient: Yvonne C. Okafor (MRN-11308) | DOB: 1989-07-23 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | Prescription: oxycodone 5mg — MRN-77201 patient | not confir | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | Patient: Carlota M. Esposito (MRN-55403) | DOB: 1956-04-09 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| mrn | HIGH | "mrn": "MRN-77441", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| mrn | HIGH | "mrn": "MRN-66109", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| mrn | HIGH | "mrn": "MRN-91503", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| mrn | HIGH | "mrn": "MRN-88712", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | m Street, Milwaukee WI 53202,(414) 555-0174,jwhitfield@email | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | re Dr #12A, Chicago IL 60611,(312) 555-9912,schen@midwestmed | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | Street, Cincinnati OH 45202,(513) 555-2288,jobrien@gmail.com | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | ak Park Ave, Dallas TX 75235,(214) 555-6610,mrodriguez@texas | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | chigan Ave, Detroit MI 48226,(313) 555-0044,rwashington@emai | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | 56 Pine Rd, Seattle WA 98101,(206) 555-3390,lnakamura@uwnmed | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | nt Bay Dr, Portland OR 97201,(503) 555-8711,msullivan@hrcare | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | dway #4B, Nashville TN 37203,(615) 555-2200,apetit@nhsmail.o | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | .moss@homeemail.net | Phone: (503) 555-9914 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | | Insurance: Aetna Policy AET-772-441-0091 | Patient: Brenna | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | anski@microsoft.com | Phone: (425) 555-8821 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record |
| phone | MEDIUM | "policy_number": "AET-772-441-0091", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "provider_phone": "(414) 555-0174" | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "policy_number": "UHG-992-448-1177", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "provider_phone": "(513) 555-2288" | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "policy_number": "BCBS-TX-772-441-9914", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "provider_phone": "(214) 555-6610" | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "policy_number": "PREM-WS-992-441-8817", | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | "provider_phone": "(206) 555-3390" | /home/ghstshdw/greysec/phi-scanner-test/files/claims/insuran |
| phone | MEDIUM | ob": "1983-07-15", "phone": "(414) 555-0174", "email": "jwhi | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
| MEDIUM | aukee WI 53202,(414) 555-0174,jwhitfield@email.com,MRN-77441 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | icago IL 60611,(312) 555-9912,schen@midwestmed.org,MRN-33018 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | nnati OH 45202,(513) 555-2288,jobrien@gmail.com,MRN-66109,Ch | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | allas TX 75235,(214) 555-6610,mrodriguez@texashealth.net,MRN | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | troit MI 48226,(313) 555-0044,rwashington@email.com,MRN-5522 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | attle WA 98101,(206) 555-3390,lnakamura@uwnmed.org,MRN-88712 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | tland OR 97201,(503) 555-8711,msullivan@hrcare.org,MRN-22909 | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | ville TN 37203,(615) 555-2200,apetit@nhsmail.org,MRN-77660,B | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | :03:17 | RN Torres | Contact: beverly.moss@homeemail.net | P | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | 28:47 | LPN Torres | Contact: david.szymanski@microsoft.com | /home/ghstshdw/greysec/phi-scanner-test/files/patient_record | |
| MEDIUM | : "(414) 555-0174", "email": "jwhitfield@email.com"}, | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | : "(513) 555-2288", "email": "jobrien@gmail.com"}, | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | : "(214) 555-6610", "email": "mrodriguez@texashealth.net"} | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | From: beverly.moss@homeemail.net | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
| |
| MEDIUM | : beverly.moss@homeemail.net |
/home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | To: records@midwestmed.org |
/home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | To: records@midwestmed.org |
/home/ghstshdw/greysec/phi-scanner-test/files/emails/patient | |
| MEDIUM | Email: beverly.moss@homeemail.net | /home/ghstshdw/greysec/phi-scanner-test/files/emails/patient |
The identified exposures represent significant HIPAA Security Rule violations under
45 CFR Part 164. The presence of unprotected SSNs and MRNs in accessible locations constitutes
a critical risk of identity theft and medical identity fraud for affected individuals.
HIGH severity findings (SSN, MRN) require immediate containment: encryption at rest,
access restriction, and breach notification evaluation per 45 CFR 164.400.
MEDIUM severity findings (email, phone) require corrective action planning within
30 days to eliminate unnecessary PHI accumulation and implement access controls.
GreySec recommends engaging legal counsel to evaluate breach notification obligations and
coordinating with the OCR HIPAA Breach Reporting portal within 60 days of discovery.