Dozens of hospitals have had their patient data compromised by a 2025 breach of Oracle Health’s legacy Cerner systems.
Health systems continue to alert patients of the hack that occurred as early as Jan. 22, 2025. Oracle Health asked healthcare organizations to delay notification amid the investigation. The EHR vendor faces legal action over the incident.
Here are the hospitals and health systems that have reportedly been affected by the data breach:
— Huntsville (Ala.) Hospital Health System
— Marshall Health Network (Huntington, W.Va.)
— MultiCare Yakima (Wash.) Memorial Hospital
— Sharp Tri-City Medical Center (Oceanside, Calif.)
— Arkansas Heart Hospital (Little Rock)
— Albany (N.Y.) Med Health System
— Huntington Hospital (Pasadena, Calif.)
— Christus Health (Irving, Texas)
— Munson Healthcare (Traverse City, Mich.)
— Atrium Health (Charlotte, N.C.)
— Jupiter (Fla.) Medical Center
— AdventHealth (Altamonte Springs, Fla.)
— Aultman Health System (Canton, Ohio)
— Lake Regional Health System (Osage Beach, Mo.)
— OSF HealthCare (Peoria, Ill.)
— Hamilton (Ga.) Medical Center
— Methodist Le Bonheur Healthcare (Memphis, Tenn.)
— ChristianaCare (Newark, Del.)
— North Kansas City (Mo.) Hospital
— LifeBridge Health (Baltimore)
— Baptist Health South Florida (Coral Gables)
— Mosaic Life Care (St. Joseph, Mo.)
— Tallahassee (Fla.) Memorial Healthcare
— Union Health (Terre Haute, Ind.)
Editor’s note: This article was updated July 14.
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.