Baptist Health Louisville
bd_9ee662f8a4a11045 · schema v1 · pii pii-v1
Full breach record for Baptist Health Louisville →Baptist Health Louisville (KY) reported to HHS OCR on 2017-11-21 a Hacking/IT Incident (phishing) affecting 880 individuals. Two employees fell victim to phishing on separate days, exposing PHI including names, dates of birth, addresses, Social Security numbers, and clinical information. Breached information was located in Email. The CE retrained employees on identifying/reporting phishing emails. OCR reviewed HIPAA policies and obtained assurances of corrective action.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Nov 21, 2017
Filed
—
No filing yet · watching
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.