Northern Regional Hospital
Disclosed Mar 15, 20266 months ago1,575 affectedConfirmed
The covered entity (CE), Northern Regional Hospital, reported that an employee of its business associate (BA) was the target of an email phishing scheme that affected the protected health information (PHI) of approximately 1,575 individuals. The PHI involved clinical, demographic, and financial information. The CE notified HHS and the affected individuals. OCR provided technical assistance to the CE regarding the HIPAA Rules.
What is known
| People affected | 1,575 (as reported to HHS) |
|---|---|
| Disclosed | Mar 15, 2026 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Northern Regional Hospital (Healthcare Provider, NC)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Mar 15 | 1,575 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.