Morningstar Class Action Filed After Hendrick Health Data Breach Exposes Patient Information
Article Content
- •A phishing attack on Xsolis led to a data breach exposing sensitive patient information.
- •Affected patients were notified of the breach over 130 days after it was discovered.
- •The class action lawsuit seeks damages for all individuals impacted by the breach.
Potts Law Firm has initiated a class action lawsuit against Hendrick Health and Xsolis, Inc. following a data breach that occurred on January 22, 2026. The breach, resulting from a phishing attack on Xsolis, allegedly exposed sensitive patient information, including Social Security numbers and medical records. Affected patients were not notified until June 2026, over 130 days after the breach was discovered. The lawsuit claims that both organizations failed to implement adequate cybersecurity measures and timely notifications, putting patients at risk of identity theft and fraud. The class action seeks damages and injunctive relief for all individuals whose information was compromised. Patients who received breach notification letters are advised to monitor their accounts closely. The case is set to be heard in the Taylor County District Court.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Hendrick Health in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…