Menu
Browse

Cyber Incident Victim: DialAmerica

Date:

Feb 2021

Location:

United States of America

Summary

Baptist Health System hospitals experienced a cybersecurity incident involving malicious code that potentially exposed protected health information. Unauthorized third-party access led to data removal from their network, compromising patient demographics, Social Security numbers, health insurance details, medical records, diagnoses, and billing information. The facilities promptly suspended user access, launched an investigation, contacted law enforcement, and implemented enhanced security measures to prevent future incidents.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

On April 20, 2022, Baptist Medical Center and Resolute Health Hospital, both operated by Baptist Health System in Texas, detected suspicious network activity indicative of unauthorized access. The hospitals promptly suspended user access to their systems and activated extensive cybersecurity protection protocols to contain the threat. A forensic investigation was immediately launched to determine the scope and nature of the incident, with law enforcement notified of the breach. The investigation revealed that an unidentified third party had infiltrated hospital networks between March 31 and April 24, 2022, deploying malicious code and exfiltrating data from compromised systems. The unauthorized access period spanned nearly four weeks before detection, during which attackers removed sensitive information from the network.

Cyber Incident Image

The compromised data included protected health information (PHI) such as patient names, Social Security numbers, health insurance details, medical record numbers, diagnoses, dates of service, and billing and claims information. While the exact number of affected individuals was not disclosed, the hospitals notified all potentially impacted patients of the exposure. In response to the incident, the organization enhanced its security and monitoring capabilities, hardening systems to reduce future risks. Remediation efforts focused on mitigating the breach’s effects and preventing similar incidents, though no specific technical details about the malicious code or attacker methodologies were publicly released. The hospitals emphasized their commitment to securing personal information through operational changes and infrastructure improvements following the investigation.

Sources
Sources available to members
1 source