Bluegrass Care Navigators
Disclosed Sep 14, 20206 years ago2,486 affectedConfirmed
The covered entity (CE), Bluegrass Care Navigators, reported that its business associate experienced a ransomware attack affecting the electronic protected health information (ePHI) of approximately 2,343 individuals. The ePHI involved included names, dates of birth, addresses, and demographic information. The CE notified HHS, affected individuals, the media, and provided substitute notice.
What is known
| People affected | 2,486 (as reported by the organization) |
|---|---|
| Disclosed | Sep 14, 2020 |
| Happened | Feb 7, 2020 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2020 data breach report: Bluegrass Care Navigatorsin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Bluegrass Care Navigators (Healthcare Provider, KY)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| Indiana AGresidents of IN | Sep 14, 2020 | 2 |
| HHS archivetotal | Sep 14, 2020 | 2,343 |
History of this record
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · summary: empty to The covered entity (CE), Bluegrass Care Navigators, reported that its business associate experienced a ransomware attack affecting the electronic protected health information (ePHI) of approximately 2,343 individuals. The ePHI involved incl · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.