
Loma Linda University Health, a nonprofit, faith-based academic medical center in Loma Linda, California, disclosed a data breach involving patient health information.
On May 25, 2026, a file containing patient information was inadvertently uploaded to an external artificial intelligence platform. The upload took place during a research study that had been approved by an Institutional Review Board, a committee that reviews and approves research involving human subjects to help ensure that patient rights and privacy are protected throughout the research process.
The incident was not caused by a cyberattack, hacking or unauthorized access by an outside party. Rather, the exposure occurred when a data file used in the approved research study was uploaded to an AI tool that was hosted outside of the organization's internal systems.
The protected health information involved in the incident included medical record numbers, dates of birth and limited clinical information related to orthopedic care. Social Security numbers, financial information and complete treatment records were not part of the exposed data, according to the company's notice.
The total number of patients whose information was included in the uploaded file has not been publicly disclosed. The company posted a notice about the data security incident on its website.
Patients who believe their information may have been involved or who have questions about the incident can contact Loma Linda University Health's Office of Corporate Compliance at 909-651-4210 for additional information.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)