St. Luke's Health System Experiences Data Breach

The data breach was the result of sending certain letters to an incorrect mailing address.

By HFT Staff


On March 6, 2023, St. Luke’s Health System discovered a technical error that resulted in certain letters mailed on Feb. 17 and Feb. 24 to be inadvertently sent to the incorrect mailing address. St. Luke’s immediately began investigating the cause of this error and implementing safeguards to prevent future occurrences. This error has been corrected, and there is no indication at this time to suggest that there has been any attempt to misuse patient information. Individuals who received another individual’s letter because of this error are asked to please destroy the letter.    

These letters included the guarantor’s name, guarantor number, patient’s name, date of service, encounter-specific account number, outstanding balance and balance status.   

Upon learning of this issue, St. Luke’s immediately began investigating the cause of this error. They have addressed the cause of this error and have implemented additional safeguards to prevent this error from happening in the future. In addition, impacted individuals’ accounts have been reset to provide additional time to resolve their balances. Their accounts are not in collections, and they are not accountable for the balances in the incorrect letter.   

In addition, St. Luke’s is offering identity theft protection services through IDX, the data breach and recovery services expert. IDX identity protection services include: 12 months of credit and CyberScan monitoring, a $1 million insurance reimbursement policy, and fully managed identity theft recovery services. With this protection, IDX will help resolve issues if an identity is compromised. 



April 17, 2023


Topic Area: Security


Recent Posts

ISSA Introduces Healthcare Platform to Advance Safer, Cleaner Patient Environments

This new resource integrates training, research and cross-sector collaboration to raise care standards and improve patient outcomes.


Third-Party Tracking Settlement is a Compliance Wake-Up Call for Healthcare Facilities Managers

Mount Sinai Health System agrees to a $5.3 million settlement to resolve claims it improperly shared patient data with Facebook through tracking tools.


ECU Health Behavioral Health Hospital Hosts Ribbon-Cutting Ceremony for New Facility

The new facility features 144 beds and a healing environment for behavioral health patients.


Aspire Rural Health System Reports Data Security Incident

Upon detecting the unauthorized activity, Aspire immediately worked to contain the incident and launched a thorough investigation.


Fatal Flaws: Strategies for Active Attackers

Anything that goes wrong with the response is the liability exposure of the organization — not the employee and not the police.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

 
 
 
 

Healthcare Facilities Today membership includes free email newsletters from our facility-industry brands.

Facebook   Twitter   LinkedIn   Posts

Copyright © 2023 TradePress. All rights reserved.