Erlanger Health System is required to notify affected individuals of improper access, use, or disclosure of their patient information, called Protected Health Information (PHI). On May 13, 2026, Erlanger Health discovered that PHI for Erlanger Western Carolina patients may have been compromised.
Erlanger promptly took steps to secure its data and launched an investigation. Investigation determined that data belonging to Erlanger Western Carolina patients’ who received anesthesia care was included in data sent to the billing partner used by the anesthesia group that provides services for the Erlanger Tennessee campuses. The anesthesia services at Erlanger Western Carolina are provided by a different anesthesia group. The information was sent between July 1, 2025, and May 27, 2026.
Information potentially compromised included patient’s name, birth date, medical record number, mailing address, email address, telephone number, internal hospital account number, insurance information, guarantor name, guarantor address, guarantor telephone number, date of service and limited medical information associated with surgical care including the operative note.
The information did not include Social Security Numbers. Importantly, not every affected individual has all these data elements impacted, or the same combination of data elements impacted. Erlanger has no evidence of any improper use of the information because of this incident. This incident has been reported to regulators.
Why Healthcare Facilities Management Is Critical to Patient Safety
Brookdale Senior Living Announces Acquisition of the Brookdale Galleria Community
Technological Readiness: The Missing Construction Milestone
From Cooling Towers to Cost Savings: Hospital Seizes Power-Saving Opportunity