Bayhealth Medical Center
ent_40a37b0ef4ac6b06a4177448
Disclosures
9
State AG · HHS OCR · 6 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
17,481
as filed · HHS OCR DE
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Bayhealth Medical Center
- Normalized
- bayhealth medical center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- 🦬Montana State AGas victim2025-02-03
Bayhealth Medical Center reported a data breach to the Montana Attorney General. The breach was reported on 2025-02-03. The breach occurred from 07/27/2024 to 07/31/2024. 61 Montana residents were affected.
- 🦞Maine State AGas victim2025-02-03
Bayhealth Medical Center, a healthcare organization, reported a data breach affecting 257 Maine residents. The breach, described as an external system breach (hacking), occurred on July 27, 2024, and was discovered on July 31, 2024. Affected individuals were notified on February 3, 2025, and offered 12 months of credit monitoring services from IDX.
- 💎Delaware State AGas victim2025-02-03
Bayhealth Medical Center notified Delaware AG of a cybersecurity incident occurring July 27-31, 2024, involving unauthorized access to network systems. The breach compromised Protected Health Information (PHI) and personally identifiable information (PII), including names and government identifiers. The company engaged forensic specialists, notified federal law enforcement, and offered 12-24 months of credit monitoring and identity restoration services to affected individuals across multiple jurisdictions.
- ⛰️New Hampshire State AGas victim2025-02-03
Bayhealth Medical Center experienced unauthorized access to its network between July 27 and July 31, 2024. The breach exposed Protected Health Information (PHI) and personal data of 185 New Hampshire residents. Bayhealth detected the suspicious activity on July 31, 2024, engaged forensic specialists, notified federal law enforcement, and provided credit monitoring services to affected individuals.
- 🐻California State AGas victim2025-02-03
Bayhealth Medical Center experienced unauthorized access to its network between July 27 and July 31, 2024. The organization became aware of suspicious activity on July 31, 2024. The incident involved the acquisition of Protected Health Information (PHI) and other personal data. Forensic specialists were engaged, and federal law enforcement was notified. Credit monitoring services are being offered to affected individuals.
- 🍁Vermont State AGas victim2025-02-03
Bayhealth Medical Center notified consumers of a cybersecurity incident where unauthorized access occurred between July 27 and July 31, 2024. The breach impacted names and Protected Health Information (PHI). The organization engaged forensic specialists, notified federal law enforcement, and is offering 12-24 months of credit monitoring. The incident status is contained.
- 💎Delaware State AGas victim2025-02-03
Bayhealth Medical Center notified individuals of a data event involving unauthorized network access between July 27 and July 31, 2024. The incident involved the acquisition of names and Protected Health Information (PHI). Federal law enforcement was notified. Bayhealth offered 12-24 months of credit monitoring and identity restoration services. Approximately 159 Rhode Island residents were identified as potentially impacted.
- DELAWAREHHS OCRas victim2022-06-30
Bayhealth Medical Center, Inc. (DE) reported to HHS OCR on 2022-06-30 a Hacking/IT Incident (ransomware) affecting 17,481 individuals. The attack was carried out against Bayhealth's business associate, whose network server was compromised. PHI exposed included names, addresses, dates of birth, Social Security numbers, financial information, and diagnoses. Bayhealth terminated its BA relationship, provided credit monitoring to affected individuals, and implemented additional technical safeguards and revised policies.
- DELAWAREHHS OCRas victim2021-05-18
Bayhealth Medical Center, Inc. reported to HHS on 2021-05-18 a Hacking/IT Incident (ransomware attack) affecting 565 individuals. The covered entity's business associate was the direct victim. Breached ePHI resided on a network server and included names, dates of birth, and prescription information. The CE coordinated with its BA to notify HHS, affected individuals, the media, and posted substitute notice on its website.