Staradvertiser AdaptHealth Data Breach Affects Over 4.1 Million Patients
Article Content
- •Over 4.1 million patients affected by AdaptHealth data breach.
- •Attack vector involved social engineering targeting a third-party contractor.
- •No Social Security numbers or financial data were compromised.
In June 2026, AdaptHealth, a Pennsylvania-based medical equipment supplier, suffered a significant data breach affecting over 4.1 million patients. The breach was initiated through social engineering that compromised a third-party contractor's credentials, allowing unauthorized access to patient management systems and document storage platforms. The compromised data included names, demographic information, health insurance details, and health information, but did not include Social Security numbers or financial information. AdaptHealth notified affected individuals and offered free identity protection services through Kroll. The breach was disclosed in an SEC Form 8-K filing, and the ShinyHunters cybercrime group claimed responsibility for the attack. As of now, there is no evidence of the compromised information being misused, but individuals are advised to monitor their accounts for suspicious activity.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track AdaptHealth in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…