Clarke County Hospital
Disclosed May 17, 20233 years ago28,003 affectedConfirmed
The covered entity (CE), Clarke County Hospital, reported that it was the subject of a ransomware attack that affected the protected health information (PHI) of 28,003 individuals. The PHI involved included names, dates of birth, addresses, and diagnoses. The CE notified HHS, affected individuals, the media, and provided substitute notice on its website. In response to the breach, the CE provided complimentary credit monitoring services and implemented additional administrative, technical, and security safeguards. Staff were retrained to protect and secure PHI.
What is known
| People affected | 28,003 (as reported to HHS) |
|---|---|
| Disclosed | May 17, 2023 |
| Happened | Apr 10, 2023 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2023 data breach report: Clarke County Hospitalin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Clarke County Hospital (Healthcare Provider, IA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| Indiana AGresidents of IN | May 17, 2023 | 11 |
| HHS archivetotal | May 17, 2023 | 28,003 |
History of this record
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · records_basis: organization to hhs · backfill source
- 2026-09-25 · records: 11 to 28003 · backfill source
- 2026-09-25 · summary: empty to The covered entity (CE), Clarke County Hospital, reported that it was the subject of a ransomware attack that affected the protected health information (PHI) of 28,003 individuals. The PHI involved included names, dates of birth, addresses, · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.