Texas Tech University Health Sciences Center
ent_284d11d60990deec68230737
Disclosures
25+
State AG · HHS OCR · Leak Site · 15 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
1,290,104
nationwide · HHS OCR TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Texas Tech University Health Sciences Center
- Normalized
- texas tech university health sciences center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- ttuhsc.edu
Disclosure history (newest 25)newest first
- Texas State AGas victim2026-04-27
Texas Tech University Health Sciences Center based in Lubbock, Texas, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2024-12-16 and reported on 2026-04-27. 738,506 Texas residents were affected. 813,892 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via Posted at company website or special website;U.S. Mail;Broadcast on Texas-wide Media.
- Vermont State AGas victim2026-04-24
Texas Tech University Health Sciences Center reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-04-24. The reporting organization type is Health Care. 29 Vermont residents were affected. Categories of data breached: Social Security Numbers, Government ID Numbers, Financial Account Codes, Credit or Debit Account Info, Health Records.
- New Hampshire State AGas victim2026-04-24
Texas Tech University Health Sciences Center filed a supplemental notice with the New Hampshire Attorney General regarding a cybersecurity incident occurring between September 17 and 29, 2024. The incident involved unauthorized access and potential exfiltration of patient data, including names, SSNs, driver's license numbers, and medical/financial records. Approximately 7 New Hampshire residents were identified as affected. The organization offered 12-24 months of credit monitoring.
- Oregon State AGas victim2026-04-24
Texas Tech University Health Sciences Center reported a data breach to the Oregon Attorney General. The breach was reported on 2026-04-24. The breach occurred during 9/17/2024 - 9/29/2024. The breach was discovered on 9/29/2024. 813,892 individuals were affected. Notice was sent on 4/9/2026.
- California State AGas victim2026-04-24
Texas Tech University Health Sciences Center experienced a cybersecurity event in September 2024 (September 17–29) causing temporary disruption to computer systems and resulting in unauthorized access to or removal of files. Affected data includes names, dates of birth, SSNs, driver's license numbers, government IDs, financial account information, health insurance information, and medical records. The data review was completed around January 24, 2025. Affected individuals were offered credit monitoring through IDX.
- Maine State AGas victim2026-04-24
Texas Tech University Health Sciences Center (TTUHSC), a healthcare organization based in Lubbock, TX, experienced an external system breach (hacking) between September 17–29, 2024, discovered on December 16, 2024. The breach affected 813,892 individuals total, including 56 Maine residents. Written notifications were sent April 9, 2026. IDX credit monitoring and identity restoration assistance were offered to affected individuals.
- Washington State AGas victim2026-04-09
Texas Tech University Health Sciences Center notified Washington AG of a cybersecurity event between Sept 17-29, 2024, affecting 511 WA residents. Data included PII, SSNs, driver's licenses, financial and medical info. Investigation concluded Jan 2026. Notices sent Nov 2024 and April 2026. Credit monitoring offered.
- Illinois State AGas victim2026-04-01
TEXAS TECH UNIVERSITY HEALTH SCIENCES CENTER filed a data-breach notice with the Illinois Attorney General in April 2026 (case 26-04-1152). The register records the breach as discovered on January 24, 2026. Personal information types reported: drivers license, financial account number, medical information, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Maryland State AGas victim2025-11-13
Texas Tech University Health Sciences Center notified the Maryland Attorney General of a cybersecurity event occurring between September 17 and 29, 2024. The incident involved unauthorized access to systems, resulting in the encryption of files and potential exfiltration of data. Approximately 145 Maryland residents were affected, with impacted data including names, driver's license numbers, SSNs, financial account information, and medical records. TTUHSC engaged third-party specialists, notified law enforcement, and provided 12 months of credit monitoring.
- Massachusetts State AGas victim2025-01-25
Texas Tech University Health Sciences reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-01-25. 142 Massachusetts residents were affected.
- Massachusetts State AGas victim2025-01-25
Texas Tech University Health Sciences reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-01-25. 192 Massachusetts residents were affected.
- Nebraska State AGas victim2025-01-24
Texas Tech University Health Sciences Center, a health care entity filed a data breach notification with the Nebraska Attorney General. The breach was discovered on 2024-12-16 according to the AG's register. The breach is dated 2024-09-17. Nebraska residents were notified on 2025-01-24.
- Vermont State AGas victim2025-01-24
Texas Tech University Health Sciences Center notified consumers of a cybersecurity event in September 2024 involving unauthorized access and removal of files. The incident may have exposed names and government identifiers. The organization is offering credit monitoring and is reviewing security policies. Rhode Island residents were specifically identified as affected.
- Maine State AGas victim2025-01-24
Texas Tech University Health Sciences Center reported an external system breach (hacking) occurring between September 17 and September 29, 2024, discovered on December 16, 2024. The incident affected 533,874 individuals in total, including 44 Maine residents. Affected individuals were notified on January 24, 2025. IDX provided 12 months of credit monitoring and identity restoration assistance to affected individuals.
- New Hampshire State AGas victim2025-01-24
Texas Tech University Health Sciences Center reported a cybersecurity event in New Hampshire where unauthorized access to or removal of files occurred between September 17-29, 2024. The incident was discovered in September 2024. Approximately 18 New Hampshire residents were notified. Potentially affected data includes PII. The organization engaged law enforcement, implemented additional safeguards, and offered credit monitoring.
- Indiana State AGas victim2025-01-24
Texas Tech University Health Sciences Center reported a data breach to the Indiana Attorney General. The breach occurred on 2024-09-17 and was reported on 2025-01-24. 252 Indiana residents were affected. 533,874 individuals affected in total.
- Montana State AGas victim2025-01-24
Texas Tech University Health Sciences Center notified individuals of a cybersecurity incident occurring between Sept 17-29, 2024. The event involved unauthorized access and removal of files, potentially exposing names and government IDs. The organization is offering credit monitoring and identity restoration services.
- California State AGas victim2025-01-24
Texas Tech University Health Sciences Center experienced a cybersecurity event between September 17 and September 29, 2024, causing temporary disruption to computer systems and applications. The incident involved unauthorized access to and potential removal of files and folders from the network. A data review completed on or about December 16, 2024 identified affected individuals. Complimentary credit monitoring and identity restoration services are being offered through IDX.
- TEXASHHS OCRas victim2024-11-25
Texas Tech University Health Sciences Center reported to HHS on 2024-11-25 a Hacking/IT Incident affecting 650000 individuals. Breached information located on Network Server.
- GLOBALLeak Siteas victim2024-10-27
Beginning in 1969 as the Texas Tech University School of Medicine, Texas Tech University Health Sciences Center (TTUHSC) is now a five-school, comprehensive health-related university with campuses in Abilene, Amarillo, Dallas/Fort Worth, Lubbock and Midland/Odessa. We present to you a large collection of confidential documents, including - patient data, medical research, a large set of SQL databases.
- Massachusetts State AGas victim2022-06-08
Texas Tech University Health Sciences Center reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-06-08. 194 Massachusetts residents were affected. The report records the breach type as electronic.
- TEXASHHS OCRas victim2022-06-07
Texas Tech University Health Sciences Center reported to HHS on 2022-06-07 a Hacking/IT Incident (ransomware attack via a business associate) affecting 1,290,104 individuals. Breached information was located on a Network Server. PHI exposed includes names, dates of birth, addresses, Social Security numbers, lab results, medications, diagnoses, and other treatment information. The CE offered credit monitoring to affected individuals, revised policies and procedures, and received OCR technical assistance on business associate agreement requirements.
- Montana State AGas victim2022-06-06
Texas Tech University Health Sciences Center (TTUHSC) notified patients of a security incident involving its third-party EMR provider, Eye Care Leaders, Inc. (ECL). On December 4, 2021, an attacker accessed and deleted ECL's Integrity EMR databases containing patient PHI and PII. While ECL found no evidence of exfiltration, insufficient logs prevented ruling it out. TTUHSC engaged IT experts and legal counsel, offered credit monitoring, and reported to HHS and state regulators.
- Montana State AGas victim2022-06-06
Texas Tech University Health Sciences Center (TTUHSC) notified patients of a security incident involving its third-party EMR provider, Eye Care Leaders, Inc. (ECL). On December 4, 2021, an attacker accessed and deleted ECL's Integrity EMR databases containing patient PHI and PII. While ECL found no evidence of exfiltration, insufficient logs prevented ruling it out. TTUHSC is offering credit monitoring and identity theft protection to affected individuals.
- South Carolina State AGas victim2022-06-06
Texas Tech University Health Sciences Center (TTUHSC) notified patients of a security incident involving its third-party EMR provider, Eye Care Leaders, Inc. (ECL). On Dec 4, 2021, an attacker accessed and deleted ECL's Integrity EMR databases/files. While ECL found no evidence of exfiltration, insufficient logs prevented ruling it out. Affected data included PHI, PII, SSNs, and medical info. TTUHSC engaged IT experts, legal counsel, and offered credit monitoring.