Skip to content

Emory Healthcare

Disclosed Dec 6, 20223 years ago1,891 affectedConfirmed

Official notice

Emory Healthcare, the covered entity (CE), reported that one of its employees impermissibly accessed the protected health information (PHI) of 1,891 individuals for the purposes of committing identity theft in an unemployment benefits fraud scheme. The PHI involved included names, dates of birth, and Social Security numbers. The CE cooperated with a related investigation into the broader scheme conducted by the US Department of Labor and Department of Justice, which ultimately resulted in the employee pleading guilty for conspiracy to commit wire fraud. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. In its mitigation efforts, the CE sanctioned the employee and provided complimentary identity protection and credit monitoring services to affected individuals.

What is known

People affected1,891 (as reported to HHS)
DisclosedDec 6, 2022
AttackInsider
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Emory Healthcare (Healthcare Provider, GA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalDec 6, 20221,891

Other breaches at Emory Healthcare

BreachAffected
Disclosed Feb 21, 2017Feb 21, 20179 years agoInsider80K
Ten missing backup discs held surgical records of 315,000 patientsApr 18, 201214 years agoLost or stolen device315K
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Emory Healthcare

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.