[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f23qi94byz5fsp":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":29,"seoTitle":30,"seoTitleEn":31,"seoDescription":30,"seoDescriptionEn":32,"logoUrl":33,"isVerified":4,"isSensitive":4,"isSpamList":34,"isMalware":34,"company":35},"6a70c18d5f34b335ff69e1a9","RockhillWomensCare2025","Rockhill Women’s Care 2025 Data Breach","rockhill-womens-care-2025","rockhillwc.com","2025-02-26T00:00:00.000Z","2026-08-03T16:27:57.207Z","Official Rockhill Women's Care notice, HHS OCR, and independent breach reporting","https:\u002F\u002Fwww.rockhillwc.com\u002Fwp-content\u002Fuploads\u002F2025\u002F10\u002F2025-Security-Notice.pdf",[14,16],"https:\u002F\u002Focrportal.hhs.gov\u002Focr\u002Fbreach\u002Fbreach_report.jsf",70129,"known",null,"people","Medium",[23,24,25,26,27,28],"Names","Physical addresses","Dates of birth","Social security numbers","Medical information","Health insurance information","\u003Cp>\u003Cstrong>The 2025 Rockhill Women’s Care data breach\u003C\u002Fstrong> was a network security incident that affected the women's-health practice's information-technology systems. The organization detected the incident on February 26, 2025. The U.S. Department of Health and Human Services Office for Civil Rights (HHS OCR) reports 70,129 affected people.\u003C\u002Fp>\u003Cp>The incident concerns Rockhill Women’s Care, an obstetrics and gynecology practice serving patients in Kansas and Missouri. The catalog's February 26 date is the confirmed discovery date, not a claimed first-access date.\u003C\u002Fp>\u003Ch2>How did the Rockhill Women’s Care data breach happen?\u003C\u002Fh2>\u003Cp>The official notice says the organization identified a network incident affecting its IT systems on or about February 26, 2025. Rockhill Women’s Care engaged outside cybersecurity specialists, contained the incident, and notified law enforcement.\u003C\u002Fp>\u003Cp>Public documents do not disclose when unauthorized access began, the initial-access method, or an exploited vulnerability. The incident is therefore not attributed to an unconfirmed attack technique or threat actor.\u003C\u002Fp>\u003Ch2>What information may have been affected?\u003C\u002Fh2>\u003Cp>The categories varied by person. Disclosed fields may have included first and last names, addresses, dates of birth, Social Security numbers, medical-treatment information, and health-insurance information.\u003C\u002Fp>\u003Cp>Not every category applied to every individual. In its September 30, 2025 statement, the organization said its investigation had not identified fraud or identity theft resulting from the incident.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The current HHS OCR entry reports 70,129 affected individuals for the network-server Hacking\u002FIT Incident. The organization's general notice does not state a number, but the federal regulator entry supplies the event-specific affected-person total.\u003C\u002Fp>\u003Ch2>What risks can this information create?\u003C\u002Fh2>\u003Cp>Social Security numbers combined with dates of birth and addresses can increase the risk of identity theft, fraudulent accounts, or tax fraud. Messages built with these details may appear to come from a legitimate organization.\u003C\u002Fp>\u003Cp>Medical-treatment and health-insurance information can be used in targeted scams that imitate a real appointment or insurance transaction. Accurate health details do not prove that a sender is authorized.\u003C\u002Fp>\u003Ch2>How did the organization respond?\u003C\u002Fh2>\u003Cp>Rockhill Women’s Care worked with specialists to review the affected dataset and identify people requiring notification. The document review concluded on August 13, 2025, and the organization published its notice on September 30.\u003C\u002Fp>\u003Cp>The organization said it implemented additional safeguards intended to reduce the likelihood of a similar incident and established a dedicated call center for questions.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients can monitor credit reports, financial accounts, health-insurance statements, and medical bills for unfamiliar activity. If a Social Security number was involved, a credit freeze or fraud alert may be appropriate.\u003C\u002Fp>\u003Cp>For an unexpected message claiming to come from Rockhill Women’s Care, a doctor, or an insurer, use contact details from the organization's official website rather than a link or phone number supplied in the message.\u003C\u002Fp>","","Rockhill Women’s Care Data Breach (70.1 Thousand People Affected)","The Rockhill Women’s Care data breach affected 70,129 people and may have exposed identity, insurance, and medical information.","\u002Fuploads\u002Flogo\u002Frockhill-womens-care-official.png",false,{"name":36,"sector":37,"country":38,"website":39,"websiteArchiveUrl":30,"websiteStatus":30,"websiteCheckedAt":19},"Rockhill Women’s Care","Healthcare","United States","https:\u002F\u002Fwww.rockhillwc.com\u002F"]