

A cybersecurity breach at Oracle Health compromised personal information belonging to nearly 20 million people, according to information released by the Texas attorney general. The incident involved sensitive data including Social Security numbers, addresses and medical information.
The scale of the breach became clear after the Texas Attorney General disclosed that Oracle had reported the theft of data belonging to almost 20 million individuals. Around 3 million affected people were residents of Texas.
Oracle had alerted some healthcare customers about the cyberattack in March 2025. At the time, the company said hackers had accessed its systems sometime after January 22. However, Oracle did not disclose how many patients or electronic health records were affected.
The company has declined to comment on the latest disclosure. The Texas attorney general’s office also did not respond to requests for comment. Reuters reported in March 2025 that the FBI was investigating the cyberattack. The investigation also examined allegations that hackers attempted to use stolen patient information to pressure medical providers into paying ransoms.
Oracle had earlier said the incident involved legacy Cerner infrastructure. The company maintained that its Oracle Cloud Infrastructure was not compromised.
The type of information involved varied among patients. Healthcare providers affected by the incident said exposed records could include names, Social Security numbers, medical record numbers, treating physicians, diagnoses, medicines and test results.
Tri-City Medical Center said the information potentially involved medical records, including treatment details, while CHRISTUS Health said affected data could include laboratory records and related patient information. Both organisations confirmed that they were among multiple healthcare providers affected by the Oracle Health incident.
Also Read: Why AI Agents Need Cybersecurity Memory to Protect Enterprise Data