← All stories
● Covered by 2 sources · 7 reportsHigh impact7 negative

Multiple Healthcare Data Breaches Impact Over 30 Million Individuals

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • DentaQuest breach impacted over 23 million individuals.
  • Unlimited Technology Systems breach affected 3.8 million people.
  • MCBS breach exposed data for 1.26 million individuals.
  • CareCloud and Brown Health Medical Group-MA breaches affected over 350,000 and 311,000 respectively.
  • Compromised data includes names, SSNs, medical, and financial information.

Overview of Recent Healthcare Data Breaches

Multiple data breaches have been reported across the healthcare sector, collectively affecting over 30 million individuals. These incidents involved various healthcare-related companies, including benefits administrators, billing firms, and technology providers, with unauthorized access occurring between May 2025 and March 2026.

Major Incidents and Affected Numbers

DentaQuest, a dental and vision benefits administrator, reported a breach impacting over 23 million individuals. The incident, discovered on May 20, involved unauthorized access to its network between May 17 and May 20. Unlimited Technology Systems, a healthcare technology provider, disclosed a breach affecting 3.8 million people, with unauthorized access occurring between October 5 and October 10, 2025.

Medical Computer Business Services (MCBS), a medical billing company, experienced a breach in September 2025, exposing data for 1,261,464 individuals. The PEAR ransomware group claimed responsibility for this attack. Healthcare IT company CareCloud notified over 350,000 individuals about a breach in its AWS environment between March 10 and March 16, 2026. Brown Health Medical Group-MA (Lifespan Physician Group of Massachusetts) reported a breach from December 2025, affecting over 311,000 individuals.

Types of Data Compromised

The compromised information across these breaches includes a range of sensitive data. Common elements include names, addresses, Social Security numbers, dates of birth, health insurance information, medical information (such as diagnoses and treatment details), member identification numbers, and financial account information. In some cases, driver's license numbers, government ID numbers, and even personnel records were also exposed.

Impact and Response

These breaches highlight ongoing vulnerabilities within the healthcare industry's data security landscape. The affected organizations are notifying individuals and, in some cases, offering services such as credit monitoring, fraud consultation, and identity theft restoration. The incidents underscore the risks associated with healthcare data aggregators and technology providers.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 15

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

How outlets covered it

Healthcare software provider Unlimited Technology Systems reported a data breach impacting over 3.8 million people, which occurred in October 2025. The breach exposed sensitive personal and health information, highlighting ongoing security challenges for healthcare data processors.

Unlimited Technology Systems, a healthcare technology provider, is notifying over 3.8 million individuals that their personal, medical, and health insurance information was stolen in a data breach that occurred in October 2025. This incident highlights ongoing cybersecurity risks within the healthcare technology sector, affecting a large number of patient records.

Brown Health Medical Group-MA, also known as Lifespan Physician Group of Massachusetts, is notifying over 311,000 individuals about a data breach that occurred in December 2025. The breach compromised personal, medical, and financial information, highlighting ongoing vulnerabilities in healthcare data security.

Healthcare IT company CareCloud is notifying at least 350,000 individuals about a data breach that compromised their personal, financial, and medical information. Hackers accessed an AWS environment within CareCloud Health between March 10 and March 16, 2026, exfiltrating data. This incident highlights ongoing vulnerabilities in healthcare data security, impacting a significant number of patients.

Medical Computer Business Services (MCBS) disclosed a network breach from September 2025 that exposed sensitive information for over 1.2 million people, including names, Social Security numbers, and medical history. This incident highlights the ongoing vulnerability of healthcare data aggregators to cyberattacks, impacting patient privacy and potentially leading to fraud.

Dental and vision benefits administrator DentaQuest is notifying millions of individuals about a data breach that exposed personal and dental health information. The breach, which occurred between May 17 and May 20, potentially affected over 23 million people and involved data such as Social Security numbers, health IDs, and treatment details. This incident highlights ongoing vulnerabilities in healthcare data security, impacting a significant portion of the US population reliant on dental benefits.

Medical Computer Business Services (MCBS) experienced a data breach in September 2025, affecting over 1.2 million individuals. The PEAR ransomware group claimed responsibility, accessing systems and potentially stealing sensitive personal and health information, which has since been made available for download.