2026 Huntsville Hospital — Cerner legacy EHR vendor breach; patient PHI and SSNs (downstream notice)
Data compromised
Patient names, Social Security numbers, and medical record information including diagnoses, test results, and treatments per Huntsville Hospital patient notification (June 2026)
Technical writeup
Downstream Cerner/Oracle Health vendor breach — January 2025, notified June 2026. Cerner notified healthcare systems on August 12, 2025 that an unauthorized third party accessed legacy Cerner-hosted data with activity dating to January 22, 2025. Huntsville Hospital Health System states its own network was not compromised but patient data maintained by the EHR vendor was exposed—including names, SSNs, and clinical information (diagnoses, test results, treatments). Law enforcement directed a delay in patient notification; Huntsville Hospital mailed notices in June 2026 and offers two years of Experian IdentityWorks Credit Plus monitoring (833-918-1119). Part of the broader oracle-cerner-legacy-health2025 campaign. Victim count not disclosed at catalog time.
Root cause
Unauthorized third-party access to Cerner (Oracle Health) legacy systems on or about January 22, 2025; Huntsville Hospital systems were not compromised—delay per law enforcement direction