CSIDB logo
Incident

Memorial Village Emergency Room

Incident posture

Attack window
Feb 2022
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2026-03-09 18:23

Linked entities

Victim
Memorial Village Emergency Room
Threat actors
0 actors
Sources
2 sources

Timeline

Occurred
Feb 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A hacking incident at Memorial Village ER in Texas potentially exposed names, birth dates, addresses, and COVID-19 test results of approximately 80,000 individuals. The organization provided notification to affected parties and offered complimentary identity theft monitoring services for one year.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

3 techniques

Description

Memorial Village ER, a healthcare facility based in Texas, experienced a hacking incident on or around February 18, 2022, which compromised the personal information of approximately 80,000 individuals. The organization confirmed unauthorized access to its systems but did not publicly disclose the specific technical vulnerabilities exploited or the duration of unauthorized access prior to detection. Following the breach discovery, Memorial Village ER initiated an investigation to assess the scope and nature of the incident. The compromised data included patient names, dates of birth, physical addresses, and COVID-19 test results, though the facility did not report evidence of Social Security numbers or financial information being accessed. No information was provided regarding whether the attack involved ransomware, malware, or other specific attack vectors, nor were details shared about the systems or servers targeted.

The healthcare provider notified all affected individuals following the investigation, though the exact notification date was not specified in public reports. Memorial Village ER offered 12 months of complimentary identity theft monitoring services to impacted patients as a mitigation measure. The organization did not disclose whether law enforcement was involved, whether data appeared on illicit forums, or if operational disruptions occurred during the incident. No lawsuits or regulatory penalties related to this breach were mentioned in available reports as of the article’s publication date. The breach contributed to a broader trend of healthcare cyberattacks documented in early 2022, though Memorial Village ER did not publicly attribute the attack to any specific threat actor group or disclose post-incident security improvements.

Sources

Sources available to members: 2 sources.

CSIDB