Skip to content

Oklahoma Department of Human Services

Disclosed Dec 5, 20178 years ago47,000 affectedConfirmed

Official notice

The covered entity (CE), Oklahoma Department of Human Services, reported that it inadvertently issued client notice letters with a second, unrelated client’s name and address due to a software change, affecting 813 individuals. The CE provided breach notification to HHS, affected individuals, and the media. Following the breach, the CE developed and deployed a solution that stopped incorrect information from being added to the notice letters provided to clients. OCR obtained assurances that the CE implemented the corrective action steps noted above.

What is known

People affected47,000 (as reported to HHS)
DisclosedDec 5, 2017
AttackHacking
Data exposedNames, Health
SectorInsurance · US
StatusConfirmed

Sources

Notices filed

WhereFiledPeople
HHS archivetotalDec 5, 201747,000
HHS archivetotalOct 8, 2018813
History of this record
  • 2026-09-25 · records: 813 to 47000 · backfill source
  • 2026-09-25 · disclosed: 2018-10-08 to 2017-12-05 · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Oklahoma Department of Human Services

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.