What to know about the Orthopedics Rhode Island data breach
On November 6, 2024, Orthopedics Rhode Island, Inc. (“Ortho RI”) reported a data breach involving sensitive patient information. The healthcare...
2 min read
Liyanda Tembani
Nov 26, 2024 7:52:55 PM
On November 14, 2024, TriHealth Physician Partners reported a data breach from a security incident at one of its vendors. The breach exposed sensitive patient information, including names, addresses, dates of birth, Social Security numbers, claims information, and medical data. Notifications were sent to affected individuals, urging them to take protective measures.
The breach traces back to October 23, 2024, when TriHealth discovered a data security incident involving an external vendor. The incident specifically impacted older documents from "For Women," an OB/GYN group acquired by TriHealth in 2020.
Hackers gained unauthorized access to these historical records but did not infiltrate TriHealth’s primary network or obtain records created after the acquisition. Following an investigation, TriHealth confirmed that confidential patient data had been compromised.
The TriHealth Physician Partners breach affected 27,426 individuals, exposing a wide range of sensitive information. The compromised data varied by individual and included personal details such as names, addresses, and dates of birth, as well as sensitive information like Social Security numbers, medical claims data, and other confidential medical records.
After discovering the breach, TriHealth took several steps:
The letters detailed the specific information exposed and provided resources for those impacted, including guidance on mitigating risks.
Read more: Tips for cybersecurity in healthcare
Encryption is strongly recommended by HIPAA to protect sensitive patient data, particularly when stored or transmitted electronically.
Phishing attacks are among the most common causes, where employees are tricked into providing credentials or sensitive information, leading to unauthorized access.
They should secure systems, contain the breach, notify affected individuals and relevant authorities, and investigate the extent of the breach to prevent further damage.
On November 6, 2024, Orthopedics Rhode Island, Inc. (“Ortho RI”) reported a data breach involving sensitive patient information. The healthcare...
Telegram, a popular communication app, has finally agreed to turn over phone numbers and IP addresses of individuals using the app for illegal...
The Internet of Medical Things (IoMT) refers to a network of connected medical devices, applications, and systems that communicate data over the...