Email breach at Portland health system risks 38K patients’ data

Legacy Health in Portland, Ore., is notifying about 38,000 patients of a May phishing attack that may have compromised personal, medical and billing information.

Advertisement

Some employees’ email accounts may have been accessed by an unauthorized third party as a result of the attack, hospital officials learned June 21.

Legacy immediately launched an investigation into the incident, which found some patient information may have been contained in the email accounts, including patients’ names, dates of birth, health insurance information, billing information and medical information regarding care received at Legacy Health. In a limited number of cases, Social Security numbers and driver’s license numbers were also included.

The hospital has found no evidence that any of the information has been misused, but as a precaution, it is offering affected individuals credit monitoring services. It also recommends patients review any healthcare statements for services they may not have authorized.

More articles on cybersecurity:

258K individuals affected in 5 yearslong Wisconsin hack, possibly by elected official
Security holes in Maryland’s Medicaid system put patient data at risk, OIG finds
Homeland Security issues alerts for some Philips medical devices

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

Released OR time is leaving capacity — and revenue — on the table

Wednesday, July 22
1:00 PM - 2:00 PM CDT

Presenters: Kelly Connolly, MHSA, PMPJane Yang, MHACaity Butler, MSN, RN, CNORThomas Brehmer

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.