Trinity Health A.I CyberSecurity Scoring
Trinity Health
Company Information
Website:http://www.trinity-health.org
Employees number:17,122
Number of followers:135,718
NAICS:62
Industry Type:Hospitals and Health Care
Homepage:trinity-health.org
Trinity Health Risk Score (AI oriented)
Between 650 and 699
Trinity HealthHospitals and Health Care
Updated:
04/04/2026
04/04/2026
679/1000
Weak
B
Trinity Health Global Score (TPRM)
xxxx
Trinity HealthHospitals and Health Care
Score locked

Trinity HealthWeak
Current Score
679B (WEAK)
01000
4 incidents
-51 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
686
JULY 2026
684
JUNE 2026
684
MAY 2026
681
APRIL 2026
680
MARCH 2026
678
FEBRUARY 2026
676
JANUARY 2026
724
Breach
13 Jan 2026 • Trinity Health
OCHIN, Mosaic, Reid Health and Trinity Health: Health Gorilla Data Breach Investigation
Health Gorilla Data Breach Exposes Sensitive Patient Information
673
CRITICAL-51
TRIMOSOCHREI1774651014
Health Gorilla Data Breach Exposes Sensitive Patient Information
Health Gorilla, a Silicon Valley-based healthcare interoperability platform founded in 2014, is under investigation following a data breach that may have exposed sensitive patient information. The incident, disclosed on January 13, 2026, involved an unauthorized disclosure of health data through its health information exchange (HIE) network.
The breach potentially compromised a wide range of personally identifiable information (PII) and medical records, including:
- Names, dates of birth, and addresses
- Driver’s license and insurance card details
- Financial information
- Clinical data (diagnoses, conditions, lab results, medications, and care plans)
Health Gorilla reported that the data may have been accessed for treatment purposes, but investigators have not confirmed whether the requests or authorizations were legitimate. In response, the affected health organizations Mosaic, OCHIN, Reid Health, Trinity Health, and UMass Memorial Health were temporarily suspended from the HIE while the investigation continues.
Class action law firm Shamis & Gentile P.A. is examining potential legal claims for affected individuals, who may be eligible for compensation. The full scope and impact of the breach remain under review.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
723
NOVEMBER 2025
723
OCTOBER 2025
721
SEPTEMBER 2025
720
DECEMBER 2022
717
Breach
16 Dec 2022 • Trinity Health
Trinity Health: Trinity Health Data Breach Lawsuit Investigation
Trinity Health Data Breach Exposes Sensitive Patient Information
664
CRITICAL-53
TRI1773772378
Trinity Health Data Breach Exposes Sensitive Patient Information
Trinity Health, one of the largest not-for-profit Catholic healthcare systems in the U.S., reported a data breach involving unauthorized access to sensitive patient information. The incident, discovered on January 5, 2023, occurred on December 16, 2022, and was linked to an automated Health Information Exchange (HIE).
The breach stemmed from a request by Health Gorilla, an HIE member, for patient data under the guise of treatment purposes. However, Trinity Health’s HIE partner could not verify whether Health Gorilla or the recipient entities had proper authorization to access the information.
Exposed data included driver’s licenses, medical records, clinical care details, insurance information, patient names, and other personally identifiable information (PII). The breach affected at least 51 individuals in Massachusetts, with potential impacts across Trinity Health’s network of 92 hospitals in 25 states.
Trinity Health, headquartered in Livonia, Michigan, employs over 133,000 staff and serves millions of patients. The organization reported the breach to the Massachusetts and Vermont attorneys general in March 2026, though the delay between discovery and notification remains unclear.
Legal firm Shamis & Gentile P.A. is investigating the incident, noting that affected individuals may be eligible for compensation. The breach highlights vulnerabilities in third-party data-sharing systems within healthcare.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
JANUARY 2021
764
Breach
01 Jan 2021 • Trinity Health
Trinity Health Corp.
Trinity Health Data Breach via Accellion File Transfer Appliance (January 2021)
678
CRITICAL-86
TRI1002810112025
Trinity Health Corp. experienced a data breach in January 2021 due to a vulnerability in the Accellion File Transfer Appliance, exposing sensitive patient data. The compromised information included names, addresses, emails, dates of birth, Social Security numbers, medical records (healthcare providers, services, lab results, medications, immunization types), payment details, credit card information, and claims data. Approximately 18,153 California residents were affected, leading to a $450,000 class-action settlement. Victims could claim up to $1,000 for out-of-pocket losses (e.g., identity theft, credit monitoring, card replacements) and a pro rata cash payment (ranging from $11 to $231, depending on claim participation). The breach stemmed from unauthorized access to patient files, raising concerns over inadequate data protection measures. While Trinity Health denied liability, the settlement addressed financial and reputational damages, including potential fraud risks for affected individuals.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
APRIL 2020
786
Cyber Attack
01 Apr 2020 • Trinity Health
Trinity Health
Data Breach at Trinity Health
760
HIGH-26
TRI913072725
The Maine Office of the Attorney General reported a data breach involving Trinity Health on October 23, 2020. The breach, reported to have occurred between April 18, 2020, and May 16, 2020, was due to a cyber-attack on Blackbaud's network, affecting 6,288 individuals, including at least 6 Maine residents, and compromising financial account details among other types of information.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Trinity Health ??
What was Trinity Health's A.I Rankiteo Cyber Score in July 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in June 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in May 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in April 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in March 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in February 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in January 2026 ??
What was Trinity Health's A.I Rankiteo Cyber Score in December 2025 ??
What was Trinity Health's A.I Rankiteo Cyber Score in November 2025 ??
What was Trinity Health's A.I Rankiteo Cyber Score in October 2025 ??
What was Trinity Health's A.I Rankiteo Cyber Score in September 2025 ??
What is the average per-incident point impact on Trinity Health's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Trinity Health ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Trinity Health's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?