Methodist Homes of Alabama & Northwest Florida Data Breach Alert

A senior man and caregiver engage in a meaningful conversation at home.

On October 14, 2024, Methodist Homes of Alabama & Northwest Florida, (“Methodist Homes”) discovered suspicious activity on our network. Immediately, we secured our systems, investigated the incident, and engaged independent cybersecurity experts. During the investigation, we learned that unauthorized access occurred between October 2, 2024, and October 14, 2024. Because of this, we took decisive action to review all data thoroughly and identify the affected individuals. On September 2, 2025, we identified the individuals whose personal and health information may have been exposed. Since we lacked contact information for some people, we are issuing this public alert to ensure everyone can take action quickly.

What Information Was Exposed

The types of information exposed varied by individual, but may include the following:

For Patients and Residents:

  • Full name

  • Social Security number

  • Driver’s license or state ID number

  • Health insurance information

  • Medical record number (MRN)

  • Medical history, diagnoses, and treatment details

  • Patient numbers

  • Medicaid/Medicare numbers

  • Dates of discharge

  • Date of birth

For Non-Patients or Non-Residents:

  • Full name

  • Social Security number

  • Driver’s license or state ID

  • Health insurance numbers

  • Relevant medical history

It is important to note that any combination of these data points may have been accessed. This makes it essential for affected individuals to remain vigilant, remain alert, and act promptly.

How Methodist Homes Is Responding

  • Secured our systems immediately and temporarily taken portions of our network offline to prevent further exposure.

  • Notified law enforcement, state regulators, and the U.S. Department of Health and Human Services Office for Civil Rights, ensuring accountability and compliance.

  • Offered complimentary credit monitoring and identity protection for individuals whose Social Security numbers were involved. These services are provided by CyberScout, a TransUnion company, at no cost to you.

What You Should Do Now

To protect your identity and safeguard your information, we strongly recommend:

  • Review your credit reports and account statements regularly for unusual activity.

  • Monitor all financial and medical accounts for suspicious transactions.

  • Report suspicious activity immediately to your bank, credit card issuer, or insurance provider.

Remember: vigilance prevents fraud, vigilance protects your identity, and vigilance gives you peace of mind.

Legal Help?

If you are affected by this data breach and would like professional guidance, you may contact us to reach a data breach lawyer for a free consultation. Our experienced team can help you connect with a Data Breach Attorney for free!

Links for more information

Frequently Raised Concerns

Q1: How do I know if my information was affected?

A: If you received a direct notification or were identified in our data review, your information may have been exposed. If you are unsure, call 1-833-833-7220 immediately to confirm.

Q2: What does the credit monitoring service include?
A: Eligible individuals receive free credit monitoring, identity restoration, and fraud resolution services through CyberScout, a TransUnion company.

Q3: Is my medical information at risk?
A: Yes. For patients and residents, protected health information such as medical history, diagnoses, and treatment details may have been accessed.

Q4: What should I do if I notice suspicious activity?
A: Immediately contact your financial institution or credit reporting agencies. Consider placing a fraud alert or credit freeze for added protection.