iRhythm Holdings Data Breach Exposes Patient Information
Article Content
- •Unauthorized access to iRhythm's systems detected on June 8, 2026.
- •Personal and protected health information of patients may have been exposed.
- •Edelson Lechtzin LLP is offering free case evaluations for affected individuals.
Edelson Lechtzin LLP is investigating a data breach at iRhythm Holdings, Inc., a heart-monitoring company. The breach was reported on June 10, 2026, after unauthorized access was detected on June 8, 2026, through social engineering targeting third-party applications. Affected individuals include patients whose personal and protected health information may have been compromised. Notifications to impacted individuals began on October 2, 2026. The breach is considered material due to the volume of data involved, though the total number of affected individuals has not been confirmed. Information potentially exposed includes names, contact details, insurance numbers, and dates of service. iRhythm has stated that no financial account or payment card information was stored and there is no evidence of identity theft. The investigation aims to determine the extent of the breach and potential class action claims.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Edelson Lechtzin LLP in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Who is affected by the breach?
How did the breach occur?
What information may have been exposed?
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…