DisclosureLens
HackingHealthcareHealthcareCustomer Data InvolvedData ExfiltratedPHIHealth (basic)Identity (basic)LowContained

Logan Health Medical Center

bd_533a8a48627cade1 · schema v1 · pii pii-v1

Severity

Low

Discovered

Nov 22, 2021

Filed

Feb 22, 2022

To disclose

13 weeks

Affected

Not disclosed

Linked

8 filings

Confidence

65%
Full breach record for Logan Health Medical Center

Logan Health Medical Center disclosed a cyber attack involving unauthorized access to a file server containing protected health information (PHI) for patients. The breach occurred between November 18 and November 22, 2021, and was discovered on November 22, 2021. Affected data included names, addresses, medical record numbers, dates of birth, diagnoses, and treatment codes. The organization engaged forensic experts, deployed additional safeguards, and offered 24 months of identity monitoring to affected individuals.

Incident timeline

undetected · 4 days
discovery → filing · 13 weeks / 92 days

Nov 18, 2021

Begins

Nov 22, 2021

Discovered

Feb 22, 2022

Filed

vs. sector median

+1 wks slower

This filing is one of 8 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (7) · sorted by filing gap

Show 3 more filingsup to 1d gap

Filing propagation · 8 filings · 7 states

View merged incident ↗
Washington State AGFeb 22 · first
HHS OCRFeb 22 · first
Montana State AGFeb 22 · first
Indiana State AGFeb 22 · first
Maine State AGFeb 22 · first
Oregon State AGFeb 22 · first
California State AGFeb 22 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.