Menu
Browse

Cyber Incident Victim: Wellstar Health System

Date:

Dec 2021

Location:

United States of America

Summary

Wellstar Health System experienced a data security incident involving unauthorized access to two employee email accounts, compromising patient names, medical record numbers, laboratory information, and internal account numbers. The organization disabled affected accounts, enforced password resets, and implemented additional technical safeguards on its email system alongside enhanced employee training to mitigate future risks. While Social Security numbers remained unaffected, impacted individuals were advised to monitor for potential misuse of their exposed information.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

Wellstar Health System experienced a data security incident involving unauthorized access to two employee email accounts. The organization detected unusual activity on February 7, 2022, through its security monitoring systems. Subsequent investigation determined that an unauthorized party had gained access to one or more accounts during a period spanning from December 6, 2021, to January 3, 2022. Upon discovery, Wellstar immediately disabled access to the compromised accounts and implemented mandatory password resets across affected systems. The breached email accounts contained various types of patient information including names, medical record numbers, laboratory information, and internal Wellstar account numbers. Notably, the investigation confirmed that Social Security numbers remained unaffected by this incident.

Cyber Incident Image

In response to the breach, Wellstar implemented enhanced technical safeguards on its email systems to reduce future risks. The organization conducted additional employee training programs focused on recognizing malicious email threats and improving security awareness. While no evidence suggested misuse of the accessed information, Wellstar notified affected patients about the potential exposure of their data and advised vigilance regarding identity protection. The health system's public disclosure emphasized ongoing efforts to strengthen security protocols without specifying the number of impacted individuals or providing details about the attacker's identity or methodology.

Sources
Sources available to members
1 source