Meridian Behavioral Healthcare
Disclosed Dec 22, 20232 years ago98,808 affectedConfirmed
The covered entity (CE), Meridian Behavioral Healthcare, reported that it experienced a ransomware attack that compromised the protected health information (PHI) of 98,808 individuals. The PHI involved included names, addresses, dates of birth, Social Security numbers, medications, diagnoses, and additional treatment information. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. To mitigate harm to affected individuals, the CE offered complimentary credit monitoring and identity protection services and implemented additional administrative, technical, and security safeguards.
What is known
| People affected | 98,808 (as reported to HHS) |
|---|---|
| Disclosed | Dec 22, 2023 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Meridian Behavioral Healthcare (Healthcare Provider, FL)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Dec 22, 2023 | 98,808 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.