Easterseals Central Illinois
Disclosed May 31, 20242 years ago14,855 affectedConfirmed
Easterseals Central Illinois, the covered entity (CE), reported that it experienced a ransomware attack affecting the electronic protected health information (ePHI) of 14,855 individuals. The ePHI involved clinical and demographic information. The CE notified individuals, the media, and HHS. The CE took several corrective actions in response to the breach including implementing multifactor authentication and additional technical safeguards. Additionally, OCR provided technical assistance to the CE.
What is known
| People affected | 14,855 (as reported by the organization) |
|---|---|
| Disclosed | May 31, 2024 |
| Happened | Apr 1, 2024 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2024 data breach report: Easterseals Central Illinoisin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Easterseals Central Illinois (Healthcare Provider, IL)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | May 31, 2024 | 14,855 |
| Indiana AGresidents of IN | Oct 14, 2024 | 29 |
History of this record
- 2026-09-25 · sector: other to health · backfill source
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · disclosed: 2024-10-14 to 2024-05-31 · backfill source
- 2026-09-25 · summary: empty to Easterseals Central Illinois, the covered entity (CE), reported that it experienced a ransomware attack affecting the electronic protected health information (ePHI) of 14,855 individuals. The ePHI involved clinical and demographic informati · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.