Data Breaches

460k Impacted by Kootenai Health Ransomware Attack

Kootenai Health says the personal and health information of over 460,000 individuals was stolen in a ransomware attack.

Kootenai Health says the personal and health information of over 460,000 individuals was stolen in a ransomware attack.

Coeur d’Alene, Idaho-based healthcare provider Kootenai Health has disclosed a data breach impacting the personal and health information of more than 460,000 individuals.

The incident was identified on March 2, when certain IT systems were disrupted, the organization, which provides healthcare services in northern Idaho and throughout the Inland Northwest, said in a notice on its website.

Subsequently, Kootenai Health discovered that the attackers had access to its network for over a week, and that certain data was exfiltrated on February 22, including personally identifiable information (PII) and protected health information (PHI).

The stolen information includes names, dates of birth, Social Security numbers, driver’s license numbers, government-issued identification numbers, medical treatment information, medical record numbers, medical diagnoses, medication details, and health insurance information.

The healthcare provider says that the incident did not impact its operations and that its hospitals and clinics continued to serve patients.

On August 12, Kootenai Health sent written notification letters to the impacted individuals. The organization submitted a copy of the letter to the Maine Attorney General’s Office, revealing that 464,088 people were affected.

Advertisement. Scroll to continue reading.

Kootenai Health is providing the impacted individuals with 12 months of credit and identity protection services.

While the healthcare organization did not share specific details on who was responsible for the data breach, the 3AM ransomware gang claimed responsibility for the attack in March.

The group has since published a 22 gigabytes archive containing data allegedly stolen from Kootenai Health, which suggests that the healthcare provided did not pay a ransom.

Related: 200k Impacted by East Valley Institute of Technology Data Breach

Related: Physical Security Firm ADT Confirms Hack and Data Breach

Related: Wawa Agrees to Payment, Security Changes for ’19 Data Breach

Related: Key Lawmakers Float New Rules for Personal Data Protection; Bill Would Make Privacy a Consumer Right

Related Content

Data Breaches

The private equity firm appears to have been targeted as part of a campaign focusing on major financial companies.

Data Breaches

The cybercrime gang has listed major companies such as Shell, Philips, Fiserv, Zebra, Mindray, and Largan Precision.

Data Breaches

The data breach was initially believed to affect roughly 350,000 people, but the HHS breach tracker shows a far bigger impact.

Data Breaches

Hackers stole names, addresses, phone numbers, Social Security numbers, and financial information from a third-party platform.

Data Breaches

Hackers used compromised credentials to access enterprise and personal tax-related data.

Data Breaches

Hackers exploited a vulnerability in the order-tracking function of a plugin to access SafePal customer information.

Data Breaches

The hackers published the allegedly stolen information, including names, addresses, email addresses, and phone numbers.

Data Breaches

The root cause of the incident is believed to be a compromised AWS access key that was exposed in publicly available JavaScript build artifacts.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version