Teiss Updoc Telehealth Platform Faces Data Breach from Third-Party Access
Article Content
- •Updoc experienced unauthorized access to a third-party system on July 31, 2026.
- •Customer personal information, including names and email addresses, may have been exposed.
- •No sensitive health or financial data was compromised, and internal systems remained secure.
Updoc, an Australian telehealth platform, reported a security breach where unauthorized access to a third-party system occurred on July 31, 2026. The breach potentially exposed customer personal information, including names, email addresses, and postal addresses. Updoc confirmed that its internal systems were not compromised, and no sensitive health or financial information was involved. The company has engaged external cybersecurity experts to investigate the incident and has notified law enforcement. Customers have been advised to remain vigilant for potential scams but do not need to take immediate action. This incident follows a previous cyber attack on Partnered Health, which occurred on June 23, 2026, affecting multiple clinics. Updoc has assured customers that the unauthorized access has been contained and that there is no evidence of further access after the initial event.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Partnered Health in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…