St. John's Riverside Hospital Falls Victim to Data Breach

There is no indication that personal information has been misused for the purposes of identity theft or fraud.

By HFT Staff


In September 2025, St. John’s Riverside Hospital became aware of potential unauthorized access to a limited number of employee email accounts for the purpose of distributing a phishing email and rerouting payment funds. Upon discovery, St. John’s Riverside Hospital promptly changed passwords, revoked session tokens, reset multifactor authentication and engaged data security and privacy professionals to assist in an investigation. There is no indication that personal information has been misused for the purposes of identity theft or fraud.  

Based on the findings of the investigation, the following types of information may have been impacted: name, date of birth, Social Security number, driver’s license or state identification number, financial account number, health insurance information, medical condition information, treatment provider name, medical record number, treatment cost information and diagnosis and/or treatment information.

Note that this describes general categories of information identified as present within the affected St. John’s Riverside Hospital accounts during the incident and includes categories that are not relevant to each individual whose information may have been present. Relatedly, if they identify additional types of impacted information, they will update their notification accordingly.  

Upon becoming aware of the incident, they conducted a thorough investigation, contained and remediated the unauthorized activity to resolve this situation. After determining there was unauthorized activity within St. John’s Riverside Hospital’s email environment, they immediately began analyzing the information involved to confirm the identities of potentially affected individuals and notify them. 



January 6, 2026


Topic Area: Information Technology , Security


Recent Posts

Why Identity Governance Is Becoming a Facilities Management Issue

As healthcare buildings grow more connected, weak identity controls can expose HVAC, security and other critical systems to serious risk.


Habitat Health Opens South Los Angeles PACE Center

The new center strengthens the local care infrastructure, delivering integrated medical, social and in-home care.


Denton County MHMR Center Suffers a Data Breach

The incident occurred on or around December 24, 2024.


What Every EVS Leader Needs To Know

Managers must demonstrate mastery of infection prevention standards, accountability through measurable outcomes and visible collaboration with clinical teams.


Blackbird Health Opens New Clinic in New Jersey

The new clinic is located in Mount Laurel.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.