HCA data breach may have exposed 11 million patients’ records, some posted online

Nashville, Tenn.-based HCA Healthcare reported a cybersecurity incident exposing the information of 11 million patients.

Advertisement

The health system, which includes 180 hospitals and 153 ASCs, reported July 10 an unauthorized party posted patient data to an online forum. The posted data includes patient names, emails, phone numbers, birth dates, service date, location and zip code.

Patients’ credit card, Social Security numbers and diagnoses were not breached.

According to HCA, the information was taken from an external storage location used to automate formatting of email messages and the incident did not disrupt patient care. The company doesn’t believe the incident will materially impact its business, operations or financial results.

HCA disabled user access to the storage location and plans to contact the 11 million patients affected to provide additional information and support.

At the Becker’s 32nd Annual Meeting: The Business and Operations of ASCs, taking place October 29-31 in Chicago, ASC leaders, surgeons and healthcare executives will explore strategies to drive growth, enhance operational performance, navigate reimbursement challenges and prepare for the future of ambulatory surgery. Apply for complimentary registration now.

Register to Attend Webinar

160 ambulatory leaders just ranked the EHR as the single system most overdue for AI reinvention

Tuesday, August 11
12:00 PM - 1:00 PM CDT

Presenter: Gautam Shah, MBA, FACHDM, NextGen Healthcare

Advertisement

Next Up in ASC News

Advertisement

Comments are closed.