Arkansas Methodist Medical Center
Disclosed Oct 19, 20205 years ago4,916 affectedConfirmed
The covered entity (CE), Arkansas Methodist Medical Center, reported that its financial institution notified them that it had experienced a cyber-attack that affected the electronic protected health information (ePHI) of 4,916 individuals. OCR determined that the financial institution was not a business associate as defined by HIPAA and is therefore, not subject to the HIPAA Rules.
What is known
| People affected | 4,916 (as reported to HHS) |
|---|---|
| Disclosed | Oct 19, 2020 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Arkansas Methodist Medical Center (Healthcare Provider, AR)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Oct 19, 2020 | 4,916 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.