Cyber Incident Victim: Doctors Center Hospital
Date:
Oct 2022
Location:
Puerto Rico
Summary
Doctors' Center Hospital experienced a cybersecurity incident impacting its communications network, which was promptly addressed without disruption to patient services. The organization engaged law enforcement, initiated internal investigations, and retained external forensic consultants to assess the incident's scope. While systems were fully restored following detection, no evidence of patient information misuse or compromised personal health data was identified. The hospital implemented IT security enhancements through external consultants to strengthen system protections and ensure data confidentiality amid rising cybersecurity threats affecting healthcare providers.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 2 motives | 3 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On October 17, 2022, Doctors’ Center Hospital in Puerto Rico detected a cybersecurity incident impacting its communications network. The disruption did not affect patient care services or hospital operations, according to official statements. Upon discovery, the hospital immediately notified relevant law enforcement agencies and initiated an internal investigation. External forensic consultants specializing in security incidents were retained to assess the scope and severity of the breach. While the exact nature of the attack was not disclosed, the incident forced temporary disruption of network communications before containment. Systems were fully restored following remediation efforts, with the hospital confirming no operational delays or service cancellations resulted from the event. No evidence of patient data misuse was identified during the initial investigation. The hospital emphasized that personal health information remained protected throughout the incident.

The hospital’s response included collaboration with IT security consultants to analyze system vulnerabilities and implement strengthened safeguards. Forensic reviews focused on determining whether attackers accessed or exfiltrated sensitive data, though no conclusive evidence of data compromise was found by the investigation’s conclusion. Doctors’ Center Hospital publicly affirmed its commitment to data security protocols and patient privacy, noting the increasing frequency of cyberattacks targeting healthcare organizations. Post-incident measures included enhanced system monitoring and infrastructure hardening to prevent recurrence. Patients were directed to a dedicated response portal and hotline for inquiries, though no specific data breach notifications were issued due to the absence of confirmed data exposure. Ongoing coordination with external cybersecurity experts continued to ensure system integrity and confidentiality safeguards aligned with industry standards.
