St. Luke's Medical Center
Disclosed Jan 16, 20179 years ago600 affectedConfirmed
St. Luke’s Medical Center, the covered entity (CE), reported that it was the victim of a cyber-attack that affected the electronic protected health information (ePHI) of 600 individuals. The ePHI involved included birthdates and treatment information. The CE notified HHS, affected individuals, and the media. The CE implemented additional administrative, technical and security safeguards to better protect its ePHI. OCR provided technical assistance to the CE regarding its Security Rule obligations.
What is known
| People affected | 600 (as reported to HHS) |
|---|---|
| Disclosed | Jan 16, 2017 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): St. Luke's Medical Center (Healthcare Provider, ND)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jan 16, 2017 | 600 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.