On or around May 27, 2026, Shoshone Medical Center became aware of potential unauthorized access to an employee email account. Upon discovery, Shoshone immediately performed password resets for the affected account and subsequently engaged a third-party team of forensic investigators to determine the full nature and scope of the event. On July 29, 2026, following a thorough investigation, Shoshone determined that a limited amount of personal information kept in the normal course of business may have been accessed by an unauthorized third party in connection with this event.
Although the forensic investigation could not rule out the possibility that an unknown actor may have accessed this information, there is no indication whatsoever that any information has been misused. The types of information contained within the affected data included patient name, address, date of birth, medical record number or patient identification number, Medicare or Medicaid number, provider name, health insurance information, admission and discharge dates, diagnosis or treatment information, and treatment cost information. Importantly, the information potentially impacted may vary for each individual, and may include all, or just one, of the above-listed types of information.
Shoshone is notifying potentially affected individuals as quickly as possible via U.S. mail to their most recent address on file. In an abundance of caution, it is providing potentially impacted individuals with complimentary credit monitoring services. Additionally, in response to this incident, it has implemented additional security measures within its systems and is reviewing its current policies and procedures related to data security.
What Accessibility in Senior Care Facilities Should Look Like
Corewell Health to Expand Grand Rapids and Troy Hospitals
Cyberattack Results in Patient Reroutes at Anne Arundel Medical Center
Tangram Furnishes Be Well OC Irvine Behavioral Health Campus