DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Henrietta Johnson Medical Center patients affected by breach at Delaware Health Net

Posted on June 29, 2023 by Dissent

CORRECTION AND UPDATE:  DataBreaches has been contacted by a spokesperson for Delaware Health Information Network who says that they were not the party responsible for this breach and this site should not have linked to them and should have linked to Delaware Health Net if they were the responsible party. DataBreaches checked the medical center’s notice and they did name “Delaware Health Network.” In light of Delaware Health Information Network’s comment to this site, DataBreaches has removed the link to them and edited the headline with apologies for the error. We also note that the Henrietta Johnson Medical Center may wish to clarify their notice or link to the responsible party to prevent others from being confused, too.  


The Henrietta Johnson Medical Center in Delaware has posted notice that some patient data was involved in a breach at Delaware Health Network (“DHN”) [see correction above].  DHN is a healthcare-controlled network provider and electronic health records management provider that provides services to Henrietta Johnson Medical Center (“HJMC”) and other entities.

According to HJMC’s notice, DHN experienced a “cyber event” that began on April 5. That incident involved unauthorized access to systems and the copying of certain files.  And also according to their notice, to date, DHN has not identified the precise patient data that may have been impacted.  Unsurprisingly, then, HJMC submitted a report to HHS on June 27 that indicated 500 patients were affected, which DataBreaches interprets as a marker for “Hey, we know we have more than 500 patients affected and we have to report within 60 days, so we’re letting you know we had a breach.”

Based on the information DHN  provided to HJMC so far, the medical center says that it is possible the patient data involved full name, date of birth, ethnicity, medical record number, diagnosis code, lab information, and health insurance information.

DataBreaches has not seen any other DHN clients reporting a breach (yet), but wonders how many of them do not know how many patients were affected, and why DHN can’t tell them that.

 


Related:

  • Protected health information of 462,000 members of Blue Cross Blue Shield of Montana involved in Conduent data breach
  • Resource: NY DFS Issues New Cybersecurity Guidance to Address Risks Associated with the Use of Third-Party Service Providers
  • TX: Kaufman County Faces Cybersecurity Attack: Courthouse Computer Operations Disrupted
  • Attorney General James Announces Settlement with Wojeski & Company Accounting Firm
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
  • Before Their Telegram Channel Was Banned Again, ScatteredLAPSUS$Hunters Dropped Files Doxing Government Employees (2)
Category: Health DataSubcontractorU.S.

Post navigation

← High school changes every student’s password to ‘Ch@ngeme!’
French Govt. Wants to Inject Domain Blocking Lists Directly Into Web Browsers →

4 thoughts on “Henrietta Johnson Medical Center patients affected by breach at Delaware Health Net”

  1. Stacey Hassel says:
    July 3, 2023 at 7:54 am

    You’ve named and linked to the wrong party – please correct to Delaware Health Net, if that is indeed the party who sustained the data breach. Delaware Health Information Network is not correct, and we ask that this be remedied immediately.

    1. Dissent says:
      July 3, 2023 at 8:28 am

      Hi Stacey. I accurately reported what Henrietta Johnson Medical Center is claiming. See their notice at https://www.hjmc.org/notice-of-data-event.html where they repeatedly name Delaware Health Network. I suggest you get in touch with them to have them correct their notice if their notice is incorrect. I’ve issued a correction at the top of the article here and will contact them about their error, too.

      1. Stacey Hassel says:
        July 3, 2023 at 9:53 am

        Apologies for not being more clear: Your site incorrectly linked to Delaware Health Information Network’s website, but you’ve since corrected. Thank you. Delaware Health Information Network and Delaware Health Network are two unrelated entities with their own websites.

        1. Dissent says:
          July 3, 2023 at 10:59 am

          I think I’ve re-edited it now to make things clearer. Sorry about it all and glad it’s sorted out now.

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.