Texas Tech University Health Sciences Center 2024.0 Data Breach

Texas Tech University Health Sciences Center Breach (2024): 1.2 Million Patient & Student Records Exposed | ObscureIQ
ObscureIQ Breach Intelligence

Classification Tags

InterlockRansomware / ExtortionEducationFull NamePhone Number
High SeverityWebsite / service breach

Texas Tech University Health Sciences Center Breach (2024): 1.2 Million Patient & Student Records Exposed

Academic health sciences institution.

Verified by ObscureIQ Intelligence
69/100Breach Risk Index
48Data Value
25Market Recency
399dSince Breach

Breach Intelligence Summary

Entity: Texas Tech University Health Sciences Center · Actor: Interlock · Sources: 2 references
Attack: Ransomware / Extortion
Profile: University · Medical education and research · Academic health institution · USA
Timeline: Breach (2024-11-24) · Year (2024.0)
Exposure: 1.2M records · 2 fields: Full Name, Phone Number
Status: Confirmed

Executive Summary

Between September 17-29, 2024, TTUHSC suffered a ransomware attack (claimed by the Interlock group, which alleged theft of 2.6TB / ~2.1M files). Notifications began January 2025; reports put the affected population at roughly 1.2-1.46 million patients. Exposed data included names, addresses, dates of birth, Social Security numbers, drivers-license/government IDs, financial account information, health-insurance details, diagnosis/treatment information, medical record numbers, and billing/claims data.

ObscureIQ assessment: This kind of breach creates high-value phishing and identity fraud risk. Because the affected entity is a health sciences center, exposed records can also increase concern around medical-context targeting even when the listed leaked fields are limited.

Breach Impact

This is a severe PHI breach: SSNs, government IDs, financial accounts, and detailed medical data together enable identity theft, financial fraud, and medical fraud.

About Texas Tech University Health Sciences Center

Texas Tech University Health Sciences Center (TTUHSC) is an academic medical center and health-sciences university system in Texas.

Why They Hold Your Data

Academic medical centers collect student, staff, patient, and administrative records, often including names, phone numbers, addresses, and other health-system contact data across clinical and educational operations.

Data Points Exposed

2 verified field types
Full Name High
Phone Number

Field names are shown in full for clarity and search visibility. Canonical machine keys are emitted only in this page’s structured data.

Exploitation & Downstream Threats

Threat Activity:Critical
Primary downstream threats:
  • SIM swap attacks where phone numbers are present
Threat vectors:
  • Name-based social engineering
  • SIM swapping, vishing & SMS phishing

Threat Actor: Interlock

Interlock
Ransomware / Extortion

Attribution and method are based on available breach intelligence. Reported attack vector: Ransomware / Extortion.

Recommended Actions

If you believe your information may be included:

Enable MFA Everywhere
Turn on multi-factor authentication on email first, then financial accounts.
Report & Recover
If you spot misuse, start an official recovery plan and report fraud.

Frequently Asked Questions

What happened in the Texas Tech University Health Sciences Center breach?

Between September 17-29, 2024, TTUHSC suffered a ransomware attack (claimed by the Interlock group, which alleged theft of 2.6TB / ~2.1M files). Notifications began January 2025; reports put the affected population at roughly 1.2-1.46 million patients. Exposed data included names, addresses, dates…

What data was exposed?

Verified fields include Full Name, Phone Number.

What should I do if I was affected?

Change reused passwords, enable MFA, and (if identity or financial data is involved) freeze your credit and monitor your accounts.

Sources & References

Every claim on this page is traceable. This breach draws on:

Breach Index
DataBreach.com
Record & field corroboration
ObscureIQ Intelligence
ObscureIQ proprietary analysis
Risk Index scoring & downstream-threat assessment

Protect Yourself

Check If You're Affected

Enter your email to check whether your data appears in this breach. We’ll send a 6-digit code to confirm it’s your address.

Get Free Breach Alerts

Be the first to know when new breaches are disclosed. Free forever — confirm your email with a 6-digit code.

High-Risk? Get an Exposure Audit

Executives, public figures, and high-visibility operators can receive tailored exposure intelligence and hardening guidance.

Request Consultation