HCF of Roselawn
Disclosed Jan 8, 20251 year ago1,671 affectedConfirmed
The covered entity (CE), HCF of Roselawn (Roselawn Manor), reported that its business associate (BA) reported that it experienced a cyber-attack that compromised the protected health information (PHI) of 1,208 individuals. The PHI involved included names, addresses, Social Security numbers, diagnoses, lab results, and medications. The CE notified HHS, affected individuals, and the media. In its mitigation efforts, the CE and BA provided complimentary credit monitoring services and implemented additional administrative and technical safeguards.
What is known
| People affected | 1,671 (as reported by the organization) |
|---|---|
| Disclosed | Jan 8, 2025 |
| Happened | Sep 17, 2024 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| Indiana Attorney General 2025 data breach report: HCF of Roselawnin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): HCF of Roselawn (Healthcare Provider, OH)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| Indiana AGresidents of IN | Jan 8, 2025 | 2 |
| HHS archivetotal | Jan 9, 2025 | 1,208 |
History of this record
- 2026-09-25 · sector: other to health · backfill source
- 2026-09-25 · attack: unknown to hacking · backfill source
- 2026-09-25 · data_types: [] to ["names","health"] · backfill source
- 2026-09-25 · summary: empty to The covered entity (CE), HCF of Roselawn (Roselawn Manor), reported that its business associate (BA) reported that it experienced a cyber-attack that compromised the protected health information (PHI) of 1,208 individuals. The PHI involved · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Indiana AG), confirmed by Indiana AG. Record counts are as reported. Not legal advice.