Integris Health
| Primary URL | Location | Industry | integrisok[.]com |
Country
United States of America
|
Healthcare
|
|---|
Profile
Integris Health, also known simply as Integris, is a healthcare provider whose headquarters are located in the United States. The organization is publicly recognized by both aliases, Integris and Integris Health, in its official communications and website. Its core purpose is to deliver medical care and health services to the communities within its service area.
Integris Health operates a network that includes acute care hospitals, outpatient clinics, and affiliated physician practices. Through these facilities, it provides primary care visits, specialist consultations, emergency department services, and inpatient surgical and medical treatments. The organization aims to offer coordinated, patient‑centered care across the geographic region it serves.
On November 28, 2023, Integris Health suffered a cyberattack that led to unauthorized intrusion into its electronic patient data repositories. The data accessed by the attackers contained personal identifiers such as full names, Social Security numbers, dates of birth, mailing addresses, telephone numbers, email addresses, demographic characteristics, health insurance details, and the names of patients’ employers. After obtaining this information, the threat actors distributed extortion emails to the affected individuals, demanding payment to prevent the public sale of the stolen data and providing links to a dark web portal where the information was allegedly offered.
Integris Health publicly confirmed the breach, took immediate steps to isolate and secure the compromised systems, and launched a comprehensive forensic investigation with the support of third‑party cybersecurity firms. The organization issued breach notifications to all potentially impacted patients, outlining the specific categories of data that were exposed and recommending protective measures such as credit monitoring and fraud alerts. Official advisories cautioned recipients not to respond to the extortion messages, not to click any supplied links, and to review their financial and medical accounts for any signs of unauthorized activity.
This incident underscores the persistent cybersecurity risks confronting healthcare providers that maintain extensive repositories of sensitive personal and health information. Despite the disruption, Integris Health continues to operate its hospitals and clinics, delivering care to patients while undertaking a review of its security infrastructure. Ongoing initiatives include the implementation of stronger access controls, enhanced network monitoring, regular staff training on phishing and social engineering tactics, and collaboration with industry partners to improve resilience against future threats.
