Duncan Regional Hospital, Inc.
ent_019e0b4bafbc6cfaf290a0e6e51ebc52
Disclosures
9
HHS OCR · State AG · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
92,398
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Duncan Regional Hospital, Inc.
- Normalized
- duncan regional hospital— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 2549000KVUQF5SPYW052
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- OKLAHOMAHHS OCRas victim2026-04-10
Duncan Regional Hospital, Inc. (OK), a healthcare provider, reported a Hacking/IT Incident affecting a network server to HHS OCR on 2026-04-10. The breach affected 724 individuals. No business associate was reported as involved. No further narrative description was provided in the OCR breach portal entry.
- Massachusetts State AGas victim2022-03-15
Duncan Regional Hospital reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-03-15. 5 Massachusetts residents were affected. The report records the breach type as electronic.
- OKLAHOMAHHS OCRas victim2022-03-04
Duncan Regional Hospital, Incorporated reported to HHS on 2022-03-04 a Hacking/IT Incident affecting 86,379 individuals. Breached information located on Network Server. The incident involved a ransomware attack encrypting PHI including names, DOB, SSN, addresses, driver's license numbers, diagnoses, and treatment info. Response included credit monitoring, security awareness training, enterprise-wide password reset, and technical safeguards.
- New Hampshire State AGas victim2022-03-04
Duncan Regional Hospital, Inc. (DRH) notified the New Hampshire Attorney General on March 4, 2022, of a data security incident detected on January 20, 2022. The incident potentially exposed patient and employee information, including names, dates of birth, Social Security numbers, and limited treatment data. Four New Hampshire residents were affected. DRH disconnected systems, engaged forensic investigators, and provided credit monitoring via Experian to affected individuals.
- Maine State AGas victim2022-03-04
Duncan Regional Hospital, Inc. reported an external system breach (hacking) occurring on 01/16/2022, discovered on 02/07/2022. The incident compromised names and Social Security Numbers of 92,398 individuals, including 4 Maine residents. Written notifications were sent on 03/04/2022, and identity theft protection services were offered.
- Indiana State AGas victim2022-03-04
Duncan Regional Hospital, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-01-16 and was reported on 2022-03-04. 39 Indiana residents were affected. 92,398 individuals affected in total.
- Montana State AGas victim2022-03-04
DRH Health (Duncan Regional Hospital, Inc.) notified patients of a data security incident detected on Jan 20, 2022. Unauthorized access impacted PHI and names stored outside the primary EMR. The company engaged forensic experts, secured systems, and offered credit monitoring. No specific count of affected individuals was provided in the letter.
- Maine State AGas victim2022-03-03
Duncan Regional Hospital, Inc. reported an external system breach (hacking) occurring on January 16, 2022, discovered on January 22, 2022. The incident compromised the personal information of 92,398 individuals, including names and Social Security Numbers. The hospital notified affected individuals in writing on March 4, 2022, and provided 12 months of credit monitoring and identity theft protection services through Experian.
- Illinois State AGas victim2022-01-01
DUNCAN REGIONAL HOSPITAL, INC filed a data-breach notice with the Illinois Attorney General during 2022 (case 2022-201). The register records the breach as discovered on January 20, 2022. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.