[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fU-5eXNmC6LdHIgN_LV-00pvt0R_d3HByQx7lRfibGZM":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"company":11,"breachDate":15,"addedDate":16,"modifiedDate":16,"pwnCount":17,"totalRecords":17,"dataClasses":18,"description":28,"source":29,"isVerified":4,"isSpamList":30,"isSensitive":4,"processingStatus":31,"logoUrl":32,"contentUpdatedAt":16,"hasEnglishDescription":4,"severity":33},"6a6748f8cef35fef6f561b60","KootenaiHealth2024","Kootenai Health 2024 Data Breach","kootenai-health-2024","kh.org",{"name":12,"sector":13,"country":14,"website":10},"Kootenai Health","Healthcare","United States","2024-02-22T00:00:00.000Z","2026-07-27T12:03:04.283Z",464088,[19,20,21,22,23,24,25,26,27],"Names","Dates of birth","Social Security numbers","Driver’s license or government-issued identification numbers","Medical record numbers","Medical treatment and condition information","Medical diagnoses","Medication information","Health insurance information","\u003Cp>\u003Cstrong>The Kootenai Health 2024 data breach\u003C\u002Fstrong> involved the Idaho health system detecting activity on March 2, 2024 that disrupted access to certain IT systems and later finding that an unknown person may have gained unauthorized access to network data around February 22. The scope also included Kootenai Clinic, Kootenai Outpatient Surgery, and Kootenai Outpatient Imaging.\u003C\u002Fp>\n\u003Cp>The official HHS Office for Civil Rights breach portal reports 464,088 affected people and classifies the event as a network-server hacking\u002FIT incident. Consumer letters in Maine and Massachusetts regulatory records support the reported dates and incident details. importedRecordCount is zero because no person-level raw data was transferred into LeakData.\u003C\u002Fp>\n\u003Ch2>How Was the Kootenai Health Breach Confirmed?\u003C\u002Fh2>\n\u003Cp>The primary source is the Kootenai Health row in the official HHS\u002FOCR list: it records an April 24, 2024 submission, 464,088 affected people, a hacking\u002FIT incident, and a network server as the location. That public population is carried directly into pwnCount and totalRecords and is not combined with state resident subtotals.\u003C\u002Fp>\n\u003Cp>The sample consumer letter published through the Maine Attorney General portal and Massachusetts OCABR independently confirms the approximate February 22 access, March 2 discovery, August 1 data-review result, disclosed data classes, and the provider's response. The letter is dated August 12, 2024 and lists 1-888-663-1581 as the assistance line.\u003C\u002Fp>\n\u003Ch2>What Happened Between February 22 and March 2, 2024?\u003C\u002Fh2>\n\u003Cp>Kootenai Health noticed unusual activity March 2 that disrupted access to certain information-technology systems. It secured the environment and engaged outside cybersecurity specialists to determine whether information had been accessed or acquired without authorization. The investigation found that an unknown actor may have accessed certain network data around February 22.\u003C\u002Fp>\n\u003Cp>The organization conducted a comprehensive review to identify personal and protected health information in the affected data, verify the people involved, and match current mailing addresses; it completed that process August 1, 2024. Public documents do not identify the initial-entry method, account or vulnerability used, or conclusively state that the files were removed from the network.\u003C\u002Fp>\n\u003Ch2>What Identity Information Was Involved?\u003C\u002Fh2>\n\u003Cp>Identity fields that varied by person were names, dates of birth, Social Security numbers, and driver's license or other government-issued identification numbers. The sample letter contains variable text for employees and their dependents or patients, so the record does not assume that every recipient had every listed field involved.\u003C\u002Fp>\n\u003Cp>A name combined with a birth date, SSN, and government identification number can increase new-account fraud, impersonation, and persuasive support-call risk. A notice recipient can consider reviewing credit reports and placing a fraud alert or credit freeze. A message is not authenticated merely because it includes accurate personal fields.\u003C\u002Fp>\n\u003Ch2>What Health and Insurance Information Was Involved?\u003C\u002Fh2>\n\u003Cp>Health fields were medical record numbers, medical treatment and condition information, medical diagnoses, medication information, and health insurance information. The public letter states these as broad categories. This entry does not add unreported subtypes such as prescription numbers, payment cards, bank accounts, passwords, or usernames.\u003C\u002Fp>\n\u003Cp>These fields can make fake appointment, medication, billing, insurance, or provider messages more convincing. Affected people can inspect explanations of benefits, new patient-portal access, unfamiliar treatments or medications, and unexpected collection attempts. Verify a suspicious communication using a known provider number or a bookmarked portal.\u003C\u002Fp>\n\u003Ch2>What Do the 464,088 Figure and Provider Response Mean?\u003C\u002Fh2>\n\u003Cp>The 464,088 figure is the affected population reported to HHS\u002FOCR, not a number of accounts or rows loaded into LeakData. pwnCount and totalRecords are therefore 464,088 while importedRecordCount is zero. Resident subsets reported to state attorneys general are already within the nationwide figure and are not added again.\u003C\u002Fp>\n\u003Cp>Kootenai Health said it secured its digital environment, implemented additional security features to reduce similar risk, and notified the FBI. Depending on recipient group, the sample letter offered 12 or 24 months of IDX credit and CyberScan monitoring, a one-million-dollar reimbursement insurance policy, and fully managed identity-recovery services.\u003C\u002Fp>\n\u003Ch2>What Should Affected People Do?\u003C\u002Fh2>\n\u003Cp>The IDX enrollment deadline in the August 12, 2024 sample letter was November 7, 2024 and has passed; recipients should use an official provider channel for current assistance or eligibility. People whose SSN or government ID was involved can consider a credit freeze, fraud alert, and monitoring for new accounts and address changes.\u003C\u002Fp>\n\u003Cp>People whose health or insurance data was involved can review explanations of benefits, medical records, and patient-account activity. Do not share a password, full SSN, payment, or one-time code in an unexpected message using the Kootenai Health or IDX name. If calling 1-888-663-1581 from the letter, first verify it in the official document.\u003C\u002Fp>","Official HHS\u002FOCR report and state regulator copies of Kootenai Health consumer notice",false,"completed","\u002Fuploads\u002Flogo\u002Fkh_org.png","High"]