Company Details
kootenai-health
2,107
10,220
62
kh.org
6
KOO_3283588
Completed

Kootenai Health Company CyberSecurity Posture
kh.orgAs a regional medical referral center, Kootenai Health (formerly Kootenai Medical Center) provides a comprehensive range of medical services to patients throughout the Inland Northwest. Kootenai Health’s main hospital, located in Coeur d’Alene, Idaho, features a capacity of 381 beds. We have more than 200 employed providers across 25+ clinical specialties from family medicine, cardiology, orthopedics, surgery and more. Kootenai Health repeatedly earns national recognition for safety and is a Magnet nursing facility. We look forward to partnering with you in your health care and career journey.
Company Details
kootenai-health
2,107
10,220
62
kh.org
6
KOO_3283588
Completed
Between 600 and 649

Kootenai Health Global Score (TPRM)XXXX

Description: The California Office of the Attorney General reported a data breach involving Kootenai Health on August 12, 2024. The breach may have occurred on or about February 22, 2024, and was discovered on March 2, 2024, potentially impacting personal information including names, Social Security numbers, and medical information. The number of affected individuals is currently unknown.
Description: Kootenai Health experienced a significant data breach when the 3AM ransomware gang leaked the personal information of over 464,000 patients. The attackers accessed sensitive data including Social Security numbers, medical records, and insurance information, causing a potential risk for identity theft and financial fraud. The breach, which began with network disruption, led to an extensive review and the implementation of additional security measures. The organization is offering credit monitoring and identity theft protection to affected individuals.


No incidents recorded for Kootenai Health in 2025.
No incidents recorded for Kootenai Health in 2025.
No incidents recorded for Kootenai Health in 2025.
Kootenai Health cyber incidents detection timeline including parent company and subsidiaries

As a regional medical referral center, Kootenai Health (formerly Kootenai Medical Center) provides a comprehensive range of medical services to patients throughout the Inland Northwest. Kootenai Health’s main hospital, located in Coeur d’Alene, Idaho, features a capacity of 381 beds. We have more than 200 employed providers across 25+ clinical specialties from family medicine, cardiology, orthopedics, surgery and more. Kootenai Health repeatedly earns national recognition for safety and is a Magnet nursing facility. We look forward to partnering with you in your health care and career journey.


We are Erasmus MC. Our roots lie in Rotterdam, a city and port of international standing. We are the most innovative university medical center in the Netherlands and one of the world’s leading centers of scientific research. We are committed to achieving a healthy population and pursuing excellence

Our purpose is to provide safe, high quality health and personal social services to the population of Ireland. Our vision is a healthier Ireland with a high quality health service valued by all. Our Workforce The health service is the largest employer in the state with over 110,000 whole time equ

Sanford Health is the largest rural health system in the U.S. Our organization is dedicated to transforming the health care experience and providing access to world-class health care in America’s heartland. Headquartered in Sioux Falls, South Dakota, we serve more than one million patients and 220,0
The Netcare Group (JSE: NTC) offers a unique, comprehensive range of medical services across the healthcare spectrum, enabling us to serve the health and care needs of each individual who entrust their care to us. Our focus on implementing sophisticated digital systems will enable us to provide care

As a world-class academic and health care system, Duke Health strives to transform medicine and health locally and globally through innovative scientific research, rapid translation of breakthrough discoveries, educating future clinical and scientific leaders, advocating and practicing evidence-base
Headquartered in Utah with locations in six primary states and additional operations across the western U.S., Intermountain Health is a nonprofit system of 33 hospitals, 400+ clinics, a medical group of more than 4,800 employed physicians and advanced care providers, a health plan division called Se

Welcome to the official LinkedIn page for McKesson Corporation. We're an impact-driven healthcare organization dedicated to “Advancing Health Outcomes For All.” As a global healthcare company, we touch virtually every aspect of health. Our leaders empower our people to lead with a growth mindset an
Aurora Health Care is proud to be a part of Advocate Health, the third-largest nonprofit integrated health system in the U.S. Advocate Health is the third-largest nonprofit, integrated health system in the United States, created from the combination of Advocate Aurora Health and Atrium Health. Prov
Every day millions of people feel the impact of our intelligent devices, advanced analytics and artificial intelligence. As a leading global medical technology and digital solutions innovator, GE HealthCare enables clinicians to make faster, more informed decisions through intelligent devices, data
.png)
A North Idaho hospital and a major Idaho health insurer are struggling to renegotiate a contract to keep the hospital in network. Kootenai...
A fellow emergency responder salutes ambulances that joined a procession from Kootenai Health in Coeur d'Alene to Spokane after a gunman...
Your guide to the most active class action firms of 2024. This is Part 2 of our report and features 15 firms that represent defendants.
On a daily basis, how many times do you enter a password? Between your e-mail accounts, bank accounts, tools for your job and your streaming...
A cyber attack has forced a US non-profit blood donor centre to postpone appointments despite declaring blood shortages just one week earlier.
Kootenai Health allegedly failed to protect the personally identifiable information and personal health information of patients, resulting in a large data...
Learn about a recent healthcare data breach at Alabama Cardiovascular Group, as well as other recent breaches in the healthcare sector.
US healthcare provider Kootenai Health has revealed that data belonging to 464000 patients has been compromised following a cyber attack.
Kootenai Health, a Coeur d'Alene, ID-based health system that serves patients in northern Idaho and the Inland Northwest, has announced that it has experienced...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Kootenai Health is http://www.kh.org.
According to Rankiteo, Kootenai Health’s AI-generated cybersecurity score is 629, reflecting their Poor security posture.
According to Rankiteo, Kootenai Health currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Kootenai Health is not certified under SOC 2 Type 1.
According to Rankiteo, Kootenai Health does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Kootenai Health is not listed as GDPR compliant.
According to Rankiteo, Kootenai Health does not currently maintain PCI DSS compliance.
According to Rankiteo, Kootenai Health is not compliant with HIPAA regulations.
According to Rankiteo,Kootenai Health is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Kootenai Health operates primarily in the Hospitals and Health Care industry.
Kootenai Health employs approximately 2,107 people worldwide.
Kootenai Health presently has no subsidiaries across any sectors.
Kootenai Health’s official LinkedIn profile has approximately 10,220 followers.
Kootenai Health is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Kootenai Health does not have a profile on Crunchbase.
Yes, Kootenai Health maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/kootenai-health.
As of December 04, 2025, Rankiteo reports that Kootenai Health has experienced 2 cybersecurity incidents.
Kootenai Health has an estimated 30,377 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Ransomware and Breach.
Detection and Response: The company detects and responds to cybersecurity incidents through an remediation measures with implementation of additional security measures, and recovery measures with offering credit monitoring and identity theft protection..
Title: Kootenai Health Data Breach
Description: Kootenai Health experienced a significant data breach when the 3AM ransomware gang leaked the personal information of over 464,000 patients. The attackers accessed sensitive data including Social Security numbers, medical records, and insurance information, causing a potential risk for identity theft and financial fraud. The breach, which began with network disruption, led to an extensive review and the implementation of additional security measures. The organization is offering credit monitoring and identity theft protection to affected individuals.
Type: Data Breach
Attack Vector: Ransomware
Threat Actor: 3AM ransomware gang
Motivation: Financial Fraud, Identity Theft
Title: Data Breach at Kootenai Health
Description: The California Office of the Attorney General reported a data breach involving Kootenai Health on August 12, 2024. The breach may have occurred on or about February 22, 2024, and was discovered on March 2, 2024, potentially impacting personal information including names, Social Security numbers, and medical information. The number of affected individuals is currently unknown.
Date Detected: 2024-03-02
Date Publicly Disclosed: 2024-08-12
Type: Data Breach
Common Attack Types: The most common types of attacks the company has faced is Breach.

Data Compromised: Social security numbers, Medical records, Insurance information
Identity Theft Risk: High

Data Compromised: Names, Social security numbers, Medical information
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Social Security Numbers, Medical Records, Insurance Information, , Names, Social Security Numbers, Medical Information and .

Entity Name: Kootenai Health
Entity Type: Healthcare Provider
Industry: Healthcare
Customers Affected: 464000

Entity Name: Kootenai Health
Entity Type: Healthcare
Industry: Healthcare

Remediation Measures: Implementation of additional security measures
Recovery Measures: Offering credit monitoring and identity theft protection

Type of Data Compromised: Social security numbers, Medical records, Insurance information
Number of Records Exposed: 464000
Sensitivity of Data: High

Type of Data Compromised: Names, Social security numbers, Medical information
Sensitivity of Data: High
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Implementation of additional security measures.
Data Recovery from Ransomware: The company recovers data encrypted by ransomware through Offering credit monitoring and identity theft protection.

Source: California Office of the Attorney General
Date Accessed: 2024-08-12
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: California Office of the Attorney GeneralDate Accessed: 2024-08-12.
Last Attacking Group: The attacking group in the last incident was an 3AM ransomware gang.
Most Recent Incident Detected: The most recent incident detected was on 2024-03-02.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2024-08-12.
Most Significant Data Compromised: The most significant data compromised in an incident were Social Security numbers, Medical records, Insurance information, , names, Social Security numbers, medical information and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Social Security numbers, Medical records, names, medical information and Insurance information.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 464.0.
Most Recent Source: The most recent source of information about an incident is California Office of the Attorney General.
.png)
MCP Server Kubernetes is an MCP Server that can connect to a Kubernetes cluster and manage it. Prior to 2.9.8, there is a security issue exists in the exec_in_pod tool of the mcp-server-kubernetes MCP Server. The tool accepts user-provided commands in both array and string formats. When a string format is provided, it is passed directly to shell interpretation (sh -c) without input validation, allowing shell metacharacters to be interpreted. This vulnerability can be exploited through direct command injection or indirect prompt injection attacks, where AI agents may execute commands without explicit user intent. This vulnerability is fixed in 2.9.8.
XML external entity (XXE) injection in eyoucms v1.7.1 allows remote attackers to cause a denial of service via crafted body of a POST request.
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.
Cal.com is open-source scheduling software. Prior to 5.9.8, A flaw in the login credentials provider allows an attacker to bypass password verification when a TOTP code is provided, potentially gaining unauthorized access to user accounts. This issue exists due to problematic conditional logic in the authentication flow. This vulnerability is fixed in 5.9.8.
Rhino is an open-source implementation of JavaScript written entirely in Java. Prior to 1.8.1, 1.7.15.1, and 1.7.14.1, when an application passed an attacker controlled float poing number into the toFixed() function, it might lead to high CPU consumption and a potential Denial of Service. Small numbers go through this call stack: NativeNumber.numTo > DToA.JS_dtostr > DToA.JS_dtoa > DToA.pow5mult where pow5mult attempts to raise 5 to a ridiculous power. This vulnerability is fixed in 1.8.1, 1.7.15.1, and 1.7.14.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.