AdaptHealth 4.1 million-person data exposure
Data Leak
Summary
Hide ▲
Show ▼
AdaptHealth confirmed that 4.1 million people were exposed in a June 5 cyberattack, turning the breach into a large-scale healthcare data leak. The compromise hit cloud-based business applications and patient systems after a social engineering attack took over a third-party contractor privileged account. Exposed data may include full names, contact information, health insurance information, and health information. The company said it found no evidence of identity theft or fraud and offered affected people 12 months of credit monitoring and identity protection.
Related Happenings
Aesto LLC operating as Aesto Health hit by network compromise
Incident
H score68
First: 01.09.2026 22:28
Last: 01.09.2026 22:28
Sources 1
About this happening:
Aesto Health disclosed a breach of a limited portion of its Amazon Web Services infrastructure, exposing protected health information tied to 9,540,683 people. The int...
Aesto LLC operating as Aesto Health hit by network compromise
IncidentAbout this happening: Aesto Health disclosed a breach of a limited portion of its Amazon Web Services infrastructure, exposing protected health information tied to 9,540,683 people. The int...
Aesto Health patient data breach
Data Leak
H score73
First: 01.09.2026 22:28
Last: 01.09.2026 22:28
Sources 1
About this happening:
Aesto Health disclosed a data breach affecting 9,540,683 individuals, creating a major identity-theft and medical-fraud risk from exposed patient records. The intrusion re...
Aesto Health patient data breach
Data LeakAbout this happening: Aesto Health disclosed a data breach affecting 9,540,683 individuals, creating a major identity-theft and medical-fraud risk from exposed patient records. The intrusion re...
MCBS data leak claimed by PEAR ransomware group
Data Leak
H score67
First: 27.07.2026 07:51
Last: 27.07.2026 07:51
Sources 1
About this happening:
A PEAR ransomware group leak made allegedly stolen MCBS files available for download, exposing personal, financial, HR, patient, payment, and email data. The leak is t...
MCBS data leak claimed by PEAR ransomware group
Data LeakAbout this happening: A PEAR ransomware group leak made allegedly stolen MCBS files available for download, exposing personal, financial, HR, patient, payment, and email data. The leak is t...
IRhythm patient data exfiltration from third-party business applications
Data Leak
H score34
First: 16.06.2026 09:31
Last: 16.06.2026 09:31
Sources 1
About this happening:
iRhythm Holdings disclosed a data breach involving third-party-hosted business applications after a threat actor used social engineering to access data and demande...
IRhythm patient data exfiltration from third-party business applications
Data LeakAbout this happening: iRhythm Holdings disclosed a data breach involving third-party-hosted business applications after a threat actor used social engineering to access data and demande...
New York City Health and Hospitals Corporation hit by cyberattack
Incident
H score59
First: 18.05.2026 15:58
Last: 18.05.2026 15:58
Sources 1
About this happening:
The New York City Health and Hospitals Corporation disclosed a data breach that exposed sensitive records and affected 1.8 million individuals. Investigators found t...
New York City Health and Hospitals Corporation hit by cyberattack
IncidentAbout this happening: The New York City Health and Hospitals Corporation disclosed a data breach that exposed sensitive records and affected 1.8 million individuals. Investigators found t...
Timeline
-
10.09.2026 00:30 1 articles · 1h ago
Social engineering compromises AdaptHealth contractor account
Exploitation ObservedAdaptHealth's privileged account for a third-party contractor was compromised through social engineering on June 5, 2026, giving attackers access to cloud-based business applications and certain internal patient management systems, document storage platforms, and electronic health record system portals.
Show sources
- AdaptHealth confirms 4.1 million people exposed in July cyberattack — www.bleepingcomputer.com — 10.09.2026 00:30
-
10.09.2026 00:30 1 articles · 1h ago
Threat actor demands ransom from AdaptHealth
Victim Impact UpdateOn June 15, 2026, an unnamed threat actor contacted AdaptHealth and demanded a ransom payment in exchange for not leaking stolen data.
Show sources
- AdaptHealth confirms 4.1 million people exposed in July cyberattack — www.bleepingcomputer.com — 10.09.2026 00:30
-
14.08.2026 03:00 2 articles · 26d ago
AdaptHealth says June 5 breach exposed 4,115,802 people
Victim Impact UpdateAdaptHealth said on August 14, 2026 that the compromise had occurred on June 5 and may have exposed full names, contact information, demographic information, health insurance information, and health information; it also said impacted individuals should have received breach notifications with instructions to enroll in free-of-charge 12-month credit monitoring and identity protection, and that it found no evidence of identity theft, fraud, or other misuse.
Show sources
- AdaptHealth confirms 4.1 million people exposed in July cyberattack — www.bleepingcomputer.com — 10.09.2026 00:30
- AdaptHealth confirms 4.1 million people exposed in July cyberattack — www.bleepingcomputer.com — 10.09.2026 00:30
-
02.07.2026 03:00 1 articles · 2mo ago
AdaptHealth files SEC disclosure after data theft
Initial DisclosureAdaptHealth filed an SEC disclosure on July 2, 2026, saying attackers accessed its systems and exfiltrated private data; the incident was later attributed to ShinyHunters in the article's reporting.
Show sources
- AdaptHealth confirms 4.1 million people exposed in July cyberattack — www.bleepingcomputer.com — 10.09.2026 00:30