Skip to content

UCLA Health

Disclosed Sep 8, 20224 years ago94,000 affectedConfirmed

Official notice

The covered entity (CE), UCLA Health, reported that analytic tools on its website may have transmitted the protected health information (PHI) of 94,000 individuals to its service providers. The PHI involved included names, dates of birth, and other identifiers. The CE notified HHS, affected individuals, the media, and provided substitute notice on its website. In response to the breach, the CE strengthened its administrative and technical safeguards to better protect its PHI. OCR provided technical assistance to the CE regarding the HIPAA Rules..

What is known

People affected94,000 (as reported to HHS)
DisclosedSep 8, 2022
AttackInsider
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): UCLA Health (Healthcare Provider, CA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalSep 8, 20222,190
HHS archivetotalJan 12, 202394,000

Other breaches at UCLA Health

BreachAffected
Disclosed Aug 4, 2026Aug 47 weeks agoUnknown
Hackers access UCLA Health network holding data of 4.5 million patientsJul 17, 201511 years agoHacking4.5M
History of this record
  • 2026-09-25 · disclosed: 2023-01-12 to 2022-09-08 · backfill source
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about UCLA Health

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.