← Ohio Living

2026 Ohio Living — network intrusion Apr 16–17; file exfiltration (≥500; review ongoing)

2026 500 records affected Share on X

Data compromised

Likely: names, addresses, DOB, SSNs, medical histories, disability, diagnostic/treatment/prescription, physician info, MRNs, health insurance, financial/payment card — final per-person inventory and total headcount still under review

Technical writeup

Verified senior-living disclosure — HIPAA Journal coverage (roundup with Erlanger and Heart of America Eye Care). Ohio Living identified suspicious activity April 17, 2026; forensics confirmed unauthorized access April 16–17, 2026 and exfiltration of files containing patient information. Categories likely involved include names, addresses, birth dates, Social Security numbers, medical histories, disability information, diagnostic and treatment information, prescription information, physician information, medical record numbers, health insurance information, and financial account/payment card information. Data review was ongoing; HHS OCR was informed the breach affected at least 500 individuals, with the total to be updated when review concludes. BreachHistory indexes recordsAffected 500 as the OCR floor pending a final headcount.

Root cause

Unauthorized network access April 16–17, 2026 with exfiltration of files containing patient information

References