Baytown Medical Center
Disclosed Mar 25, 20242 years ago1,500 affectedConfirmed
Baytown Medical Center, the covered entity (CE), reported that its business associate (BA) inadvertently made the protected health information (PHI) of 1,500 individuals viewable over the Internet. The PHI involved included names, dates of service, and diagnosis codes. The CE notified HHS, the affected individuals, the media, and provided substitute notice. As a result of OCR’s investigation, the CE and BA implemented administrative and technical safeguards to better protect sensitive data.
What is known
| People affected | 1,500 (as reported to HHS) |
|---|---|
| Disclosed | Mar 25, 2024 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Baytown Medical Center (Healthcare Provider, TX)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Mar 25, 2024 | 1,500 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.