An intruder spent two days inside a Honolulu dental chain’s network in July, reaching the records of 45,853 patients. Staff flagged suspicious activity on July 20, and investigators later pinned the access window to a span starting July 19 that took in servers holding patient files. Contact details, birth dates, and dental treatment and insurance information were caught up in the incident; the notice said financial data and Social Security numbers were not. The chain runs about a dozen clinics under the Hawaii Family Dental banner, and the Qilin extortion crew has claimed responsibility and says it took sensitive files.
Four smaller disclosures landed the same week. Life Bridges, a Cleveland, Tennessee provider of residential and medical support for adults with intellectual and developmental disabilities, reported 5,194 people caught in a June 17-22 network intrusion, with Social Security numbers, diagnoses, lab results and claims data involved. In Valhalla, New York, Westchester Institute for Human Development said an email compromise running from March 23 to April 14 exposed records for 938 clients, including full-face photographs. Community Health Care, which runs 19 practices in northeastern Ohio, traced a single hijacked mailbox to 808 patients. Shoshone Medical Center, a critical access hospital in Kellogg, Idaho, notified 553 people after an employee email account was accessed around May 27.
All five organizations say they have strengthened safeguards since the incidents.