UnknownOtherIDENTITY_GOVERNMENTPHIPIIMedium
Cookeville Regional Medical Center
bd_6daf9b18a85b8248 · schema v1 · pii pii-v1
Full breach record for Cookeville Regional Medical Center →Cookeville Regional Medical Center based in Cookeville, Tennessee, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-03-16 and reported on 2026-04-17. 529 Texas residents were affected. 337,917 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
Texas clock✗ TX AG >30d5 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed529 affectedView incident
A leak claim by rhysida about this victim predates this filing by 278 days.View originating leak claim
Source provenance
- Source URL
- https://oag.my.site.com/datasecuritybreachreport/apex/DataSecurityReportsPage#BR-0004978
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 17, 2026
- Raw hash
- ba56d460e3bd5f8a50636bf79d0ef0965e72902263c54217fe6bf0b3c67ec9d3
Reporting entity
- Name
- Cookeville Regional Medical Centernorm: cookeville regional medical center
Victim entity
- Name
- Cookeville Regional Medical Centernorm: cookeville regional medical center
- Industry
- Otherllm
Incident
- Discovered
- Mar 16, 2026
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 529
- Data types
- IDENTITY_GOVERNMENTPHIPII
- Attack vector
- Unknown
- Threat actor
- External
Compliance
- Time to disclose
- 5 weeks(32 days from discovery to filing)
- Compliance flags
- TX AG >30dLeak >180d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.