An employee at the nonprofit health system fell victim to a phishing attack May 9. Presbyterian became aware that an unauthorized third-party had gained access to the email account on June 9.
Patient information that may have been affected included names, dates of birth, Social Security numbers and other types of information. Presbyterian is unaware of any misuse, reports the Albuquerque Journal. The health system also said that the hackers did not gain access to its EHR or patient billing information.
Since the incident, Presbyterian has added additional security measures to protect its email system. Additionally, the health system will continue to conduct its annual security training for employees.
More articles on cybersecurity:
19 healthcare privacy incidents in July
Paper records most common source for data breaches in hospitals, study finds
How this Arizona hospital’s 4-person IT team responded to a ransomware attack
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.