Associates in Psychiatry and Psychology
| Primary URL | Location | Industry | www[.]assocpsych[.]com |
Country
United States of America
|
Healthcare
|
|---|
Profile
Associates in Psychiatry and Psychology is a mental health practice located in Minnesota, United States of America. The organization provides outpatient psychiatric and psychological services to individuals seeking evaluation, therapy, and related care. Its core offerings include diagnostic assessments, medication management, and psychotherapy sessions. The practice serves patients from the surrounding community and surrounding regions.
On March 30, 2018, the practice experienced a ransomware attack that encrypted files and disabled system recovery functions overnight. The attackers, suspected to be based in Eastern Europe, deployed the TripleM ransomware variant. Local backups stored on network devices were also erased during the incident. The ransom demand was initially set at four Bitcoin and later negotiated down to 0.5 Bitcoin, which the organization paid.
The attack affected the records of 6,546 patients, prompting notification of those individuals and federal health authorities. Investigators found no evidence that patient data was accessed or exfiltrated by the attackers. The organization complied with applicable breach notification requirements by informing regulators and affected parties. Clear communications were issued detailing the technical impact of the ransomware and the steps taken to restore operations.
As a provider of psychiatric and psychological care, the organization operates within the healthcare sector and is subject to federal health privacy regulations. Its specialization in outpatient mental health distinguishes it from inpatient facilities or broader medical groups. The practice’s focus on behavioral health services positions it as a community‑based resource for mental health support.
The incident demonstrated how ransomware can encrypt files, disable recovery functions, and erase local backups. Despite the disruption, the organization resumed normal operations after restoring access to patient records. The episode remains a documented example of a ransomware attack on a mental health provider that did not result in confirmed data exfiltration.
