Erlanger Health System is required to notify affected individuals of improper access, use, or disclosure of their patient information, called Protected Health Information (PHI). On May 13, 2026, Erlanger Health discovered that PHI for Erlanger Western Carolina patients may have been compromised.
Erlanger promptly took steps to secure its data and launched an investigation. Investigation determined that data belonging to Erlanger Western Carolina patients’ who received anesthesia care was included in data sent to the billing partner used by the anesthesia group that provides services for the Erlanger Tennessee campuses. The anesthesia services at Erlanger Western Carolina are provided by a different anesthesia group. The information was sent between July 1, 2025, and May 27, 2026.
Information potentially compromised included patient’s name, birth date, medical record number, mailing address, email address, telephone number, internal hospital account number, insurance information, guarantor name, guarantor address, guarantor telephone number, date of service and limited medical information associated with surgical care including the operative note.
The information did not include Social Security Numbers. Importantly, not every affected individual has all these data elements impacted, or the same combination of data elements impacted. Erlanger has no evidence of any improper use of the information because of this incident. This incident has been reported to regulators.
Parking: Where the Outpatient Land Crunch Shows First
Clear Behavioral Health Opens New Outpatient Mental Health Center in Anaheim Hills
Bon Secours Begins Construction on Freestanding Emergency Department in Norfolk
The OR HVAC Puzzle: Why Individual Systems Are on the Rise
Skanska Completes Renovation of Specialized Care Facility for Sutter Health