
A Raleigh family medicine practice says an unauthorized actor accessed its systems this spring, and federal records now show the incident affected 500 people. Potentially exposed information includes medical and treatment details, Social Security numbers, financial information and government-issued IDs.
Family Medical Associates of Raleigh discovered suspicious activity on May 7 and later determined that an unauthorized actor had intermittently accessed some systems between April 18 and April 20, according to Claim Depot's report. The practice said its investigation found evidence that some internal data may have been downloaded, but the review was still ongoing.
Federal Filing Puts A Number On The Breach
The U.S. Department of Health and Human Services lists Family Medical Associates of Raleigh, PA, as a North Carolina healthcare provider affected by a hacking or information-technology incident. The HHS breach portal records 500 individuals affected and shows the breach was submitted on July 2, with the compromised information located on a network server.
A ransomware group called Genesis claimed responsibility on June 3, saying it had obtained data from the practice, according to Claim Depot. That dark-web posting allegedly listed healthcare, clinical, patient-list, accounting, financial and operational data, but the practice's public notice describes the categories as potentially exposed rather than providing a person-by-person accounting.
What Patients Are Being Told
In its data incident notice, the Raleigh practice said potentially affected information may include names, dates of birth, addresses, medical information, health insurance information, financial or payment-related information and government identification numbers. It urged individuals to remain alert for identity theft, fraud and medical identity theft.
People with questions can contact Family Medical Associates of Raleigh at 919-875-8150 or [email protected]. Because the investigation remains open, patients may not yet have a complete answer about whether their specific records were involved.
Healthcare Breaches Remain A Federal Focus
The incident fits a broader pattern tracked by federal regulators: HHS said hacking and ransomware are the most frequently reported types of large healthcare breaches. The agency says the HIPAA Security Rule requires providers and other regulated entities to use administrative, physical and technical safeguards to protect electronic protected health information.









