Lehigh Valley Women's Medical Specialties
Disclosed Nov 30, 20223 years ago4,535 affectedConfirmed
The covered entity (CE), Lehigh Valley Women’s Medical Specialties, reported that its business associate (BA) was the victim of a ransomware attack that affected the protected health information (PHI) of 4,535 individuals. The PHI involved included names, dates of births, addresses, Social Security numbers, drivers’ license numbers, diagnoses, lab results, medications, and other treatment information. The BA notified HHS, affected individuals, the media, and provided substitute notice. In response to the breach, the CE provided complimentary credit monitoring services, implemented additional administrative and technical safeguards, revised its policies and procedures, and provided training to its workforce.
What is known
| People affected | 4,535 (as reported to HHS) |
|---|---|
| Disclosed | Nov 30, 2022 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Lehigh Valley Women's Medical Specialties (Business Associate, PA)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Nov 30, 2022 | 4,535 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.