- State
- MI
- Covered entity type
- Health Plan
- Individuals affected
- 7,666
- Business associate present
- No
- Type of breach
- Hacking/IT Incident
- Location of breached information
- Network Server
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
FireKeepers Casino Hotel, the covered entity (CE), discovered that a vendor’s credentials were compromised which enabled an unauthorized individual to gain access to its computer system. This incident happened from
September 7, 2014, through April 26, 2015 and affected 7,666 individuals. The protected health information (PHI) involved included names, addresses, dates of birth, drivers’ license numbers, social security numbers, financial information, insurance information, and medical billing information.
FireKeepers notified all affected individuals and the media. It terminated remote access to its computer system for vendors and strengthened its security measures for remote access. It also revised its policies and procedures regarding the privacy and security of PHI. All employees were re-trained. FireKeepers provided documentation to OCR of these corrective action steps.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.