← Madera Community Hospital

2026 Madera Community Hospital — network intrusion May 2025; ~150,810 notified (PHI/PII)

2026 150.8K records affected Share on X

Data compromised

Per hospital notice / ClaimDepot: names, contact information, login credentials, financial account information, medical record information, health insurance details, government identification numbers; HHS OCR lists ~150,810 individuals

Technical writeup

Verified — Madera Community Hospital (Madera, California) detected suspicious network activity on May 29, 2025; investigation concluded an unauthorized party accessed systems for about two days (May 28–29, 2025). Early forensics did not show definitive file theft; the hospital later concluded files from a portion of the network may have been acquired, completed a specialized data review (results April 2026), and began consumer notices around mid-July 2026 after verifying mailing addresses. California AG listing July 14, 2026; Massachusetts OCABR notice; HHS OCR / ClaimDepot cite 150,810 individuals. Potentially affected fields include names, contact data, login credentials, financial account information, medical records, health insurance details, and government IDs. Hospital says it has seen no evidence of public release. Complimentary Experian IdentityWorks offered to eligible recipients. BreachHistory indexes recordsAffected 150810 from OCR/ClaimDepot. (Trade-press “extortion” framing is not corroborated in the hospital’s public notice language reviewed at indexing.)

Root cause

Unauthorized third-party network access May 28–29, 2025; files later assessed as potentially acquired (CA AG / HHS OCR / consumer notice)

References