Cameron Regional Medical Center Hit by Ransomware Attack, Exposing Sensitive Patient Data
Cameron Regional Medical Center, a nonprofit hospital serving Northwest Missouri and surrounding rural communities, disclosed a ransomware attack on June 18, 2026, after detecting unauthorized access to its systems. The incident prompted an immediate response, including system lockdowns and a third-party forensic investigation.
The ransomware group ANUBIS later claimed responsibility, threatening to leak stolen data on the dark web. While the investigation remains ongoing, the breach is believed to have compromised a wide range of protected health information (PHI) and personally identifiable information (PII), including:
- Names, addresses, and dates of birth
- Social Security and driver’s license numbers
- Financial account and health insurance details
- Medical diagnoses, treatment records, and provider information
- Electronic signatures and employer-assigned IDs
Affected individuals were notified via U.S. mail, and the hospital posted a public notice on its website. The law firm Shamis & Gentile P.A. is investigating potential legal action on behalf of impacted patients, citing possible compensation for damages and identity theft risks.
Cameron Regional Medical Center, a 501(c)(3) nonprofit, operates a network of clinics across five counties and employs nearly 100 staff, serving as a critical healthcare provider in the region. The full scope of the breach and its long-term impact are still under review.
Source: https://www.claimdepot.com/investigations/cameron-regional-medical-center-data-breach-2026
Cameron Regional Medical Center, Inc. cybersecurity rating report: https://www.rankiteo.com/company/cameron-regional-medical-center
"id": "CAM1787113770",
"linkid": "cameron-regional-medical-center",
"type": "Ransomware",
"date": "6/2026",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare',
'location': 'Northwest Missouri, USA',
'name': 'Cameron Regional Medical Center',
'size': 'Nearly 100 staff',
'type': 'Nonprofit Hospital'}],
'customer_advisories': 'U.S. mail notifications to affected individuals',
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': ['Names',
'Addresses',
'Dates of birth',
'Social Security '
'numbers',
'Driver’s license '
'numbers',
'Financial account '
'details',
'Health insurance '
'details',
'Medical diagnoses',
'Treatment records',
'Provider information',
'Electronic '
'signatures',
'Employer-assigned '
'IDs'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Protected health information '
'(PHI)',
'Personally identifiable '
'information (PII)']},
'date_detected': '2026-06-18',
'date_publicly_disclosed': '2026-06-18',
'description': 'Cameron Regional Medical Center, a nonprofit hospital serving '
'Northwest Missouri and surrounding rural communities, '
'disclosed a ransomware attack on June 18, 2026, after '
'detecting unauthorized access to its systems. The incident '
'prompted an immediate response, including system lockdowns '
'and a third-party forensic investigation. The ransomware '
'group ANUBIS later claimed responsibility, threatening to '
'leak stolen data on the dark web.',
'impact': {'data_compromised': 'Protected health information (PHI) and '
'personally identifiable information (PII)',
'identity_theft_risk': 'High',
'legal_liabilities': 'Potential legal action',
'operational_impact': 'System lockdowns',
'payment_information_risk': 'High'},
'initial_access_broker': {'data_sold_on_dark_web': 'Threatened'},
'investigation_status': 'Ongoing',
'motivation': 'Data exfiltration and extortion',
'ransomware': {'data_exfiltration': 'Yes', 'ransomware_strain': 'ANUBIS'},
'references': [{'source': 'Public notice on Cameron Regional Medical Center '
'website'}],
'regulatory_compliance': {'legal_actions': 'Potential legal action by Shamis '
'& Gentile P.A.',
'regulations_violated': ['HIPAA']},
'response': {'communication_strategy': 'Public notice on website and U.S. '
'mail notifications',
'containment_measures': 'System lockdowns',
'incident_response_plan_activated': 'Yes',
'third_party_assistance': 'Forensic investigation'},
'threat_actor': 'ANUBIS',
'title': 'Cameron Regional Medical Center Ransomware Attack',
'type': 'Ransomware'}