ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

Ascension reports data breach linked to former service provider

St. Louis, Missouri-headquartered Ascension Healthcare said that one of its service providers experienced a significant data security incident last year, compromising the sensitive personal information of over 110,000 individuals.

 

In a data security incident notice filed with the Offices of  Attorney Generals of Texas and Massachusetts, Ascension said that on December 5, it became aware of  a data security incident involving one of its former service providers that compromised the sensitive personal information of its patients.

 

The healthcare provider immediately launched an investigation, with assistance from external cyber security experts, to determine the nature and scope of the incident.

 

“Our investigation determined on January 21, 2025, that Ascension inadvertently disclosed information to a former business partner, and some of this information was likely stolen from them due to a vulnerability in third-party software used by the former business partner,” Ascension said.

 

The compromised data included names, addresses, phone numbers, email addresses, dates of birth, race, gender, Social Security numbers, clinical information related to inpatient visit, place of service, physician names, admission and discharge dates, diagnosis and billing codes, medical record numbers, and insurance company name.

 

Ascension, in its filing with the Texas state regulator, said that it has identified at least 114,692 Texas residents impacted by the incident.

 

The healthcare provider has advised all affected individuals to regularly monitor their credit reports, account and benefit statements and report any suspicious activity to law enforcement authorities, including the police and the state attorney general.

 

It has also offered two years of complimentary identity protection and credit monitoring services through Kroll to all affected individuals.

 

In May last year, Ascension reported another data security incident that compromised the sensitive personal information of more than 5.5 million individuals. According to the healthcare provider’s data breach notice, a cybercriminal obtained a copy of certain files containing personal information of Ascension patients and employees.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543