The report, which was published March 7, revealed that the type of patient information breached includes addresses, medical information, health insurance, date of birth, and “other.”
“The incident involved internal use of unapproved software and did not involve a cyberattack or external exposure of data,” a spokesperson for UT Southwestern Medical Center said in a statement shared with Becker’s. “UT Southwestern provided initial notification to the OAG in compliance with state regulations.”
News of the data breach comes after the hospital was part of a MOVEit software data breach last July that affected millions of people across various industries.
“We consider the protection of our patients’ privacy of utmost importance and regret the occurrence of this incident,” the spokesperson said. “We are assessing the data to prepare notifications to those impacted in accordance with federal regulations.”
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.