Vendor Magellan Health System discovered in July that an employee had fallen victim to a phishing attack, giving an unauthorized third-party access to client information. Magellan informed TennCare of the incident in September.
Member data that may have been exposed included names, Social Security numbers, member identification numbers, health plans, provider names and the names of drugs that members have been prescribed.
Magellan said there is no evidence that member information has been used.
More articles on cybersecurity:
DNA-testing company informs consumers of data breach
Maine provider alerts 30,000 patients of data breach
How hospitals should approach cybersecurity
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.