St. Mary's Health
bd_6b42da67f36d5a2c · schema v1 · pii pii-v1
Full breach record for St. Mary's Health →3 incidents on fileSt. Mary's Health, Inc. d/b/a St. Vincent Evansville disclosed a cybersecurity incident discovered on Feb 12, 2018. A configuration error on a credentialing software server exposed patient/staff PII (names, DOB, SSN, DLs) to the internet. Unauthorized external actors attempted to download data. The server was taken offline and reconfigured. No evidence of data misuse or dark web posting was found. Affected individuals were offered 1 year of Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 12, 2018
Begins
Feb 12, 2018
Discovered
May 31, 2018
Filed
vs. sector median
+4 wks slower
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- New Hampshire State AGbd_b5221e5123248fee2018-05-31Verified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.