The biggest health care data breaches you should know about in Pennsylvania
This story originally appeared on Drata and was produced and distributed in partnership with Stacker Studio.
The biggest health care data breaches you should know about in Pennsylvania
It starts with an often-paralyzing attack on computer systems. Doctors scramble to notify patients awaiting surgery that their procedures have been delayed due to a ransomware attack.
Sometimes a single cyberattack can impact hospitals across multiple states, as was the case when hackers targeted CommonSpirit Health in October 2022. Just one reported case of ransomware has allegedly led to the death of a patient. More often, patients' sensitive information is served up to a market of seedy individuals around the world ready to cash in on someone else's identity.
Health care institutions are among the most targeted businesses in the world, chiefly because they hold such sensitive information about the patients they serve. Hospitals, home health agencies, and other institutions store patients' phone numbers, Social Security numbers, addresses, and other things that would allow any would-be criminal to pose as a patient and open new credit cards or bank accounts in their name.
Drata analyzed Department of Health and Human Services data to determine which health care data breaches reported in 2022 affected the most residents in Pennsylvania. Breaches that did not include locations were not included in this analysis.
Read on to see which institutions reported data breaches to the federal government in your state and explore the largest across the nation here.
1. Connexin Software, Inc. network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 2,216,365
- Date reported: 11/11/2022
2. Keystone Health network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 235,237
- Date reported: 10/14/2022
3. Gateway Rehabilitation Center network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 130,000
- Date reported: 11/18/2022
4. Law Enforcement Health Benefits, Inc. network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 85,282
- Date reported: 03/28/2022
5. Family Practice Center PC network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 83,969
- Date reported: 07/11/2022
6. Medical Associates of the Lehigh Valley network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 75,628
- Date reported: 09/09/2022
7. Resources for Human Development other portable electronic device breach
- Type of breach: Theft
- Individuals affected: 46,673
- Date reported: 03/29/2022
8. Aesthetic Dermatology Associates, PC network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 33,793
- Date reported: 10/10/2022
9. PrimeCare Medical, Inc. network server breach
- Type of breach: Unauthorized Access/Disclosure
- Individuals affected: 22,254
- Date reported: 10/31/2022
10. Rosenfeld VanWirt, PC network server breach
- Type of breach: Hacking/IT Incident
- Individuals affected: 18,719
- Date reported: 11/16/2022