Skip to content
Tech News
← Back to articles

AdaptHealth confirms 4.1 million people exposed in July cyberattack

read original get Yubico YubiKey 5 NFC Security Key → more articles
Why This Matters

A single compromised third-party contractor account led to one of the year's largest healthcare breaches, exposing sensitive health, insurance and demographic data on 4.1 million AdaptHealth patients across all 50 states. It underscores how social engineering against privileged vendor accounts remains the soft underbelly of cloud-based healthcare IT, and how groups like ShinyHunters continue to monetize extortion of patient data.

Key Takeaways
Worth a Look

Yubico YubiKey 5 NFC Security Key — This breach started with a social-engineered account takeover — exactly the attack a hardware security key is built to stop. The YubiKey 5 NFC plugs into USB-A or taps your phone over NFC to provide phishing-resistant two-factor login for accounts like Google, Microsoft, and password managers, so a stolen code or password alone isn't enough.

See Yubico YubiKey 5 NFC Security Key on Amazon → Affiliate link — we may earn a commission on purchases, at no extra cost to you. Product picked by AI based on this article; it is not a tested recommendation.

Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group.

The company provides home medical devices, supplies, and related services, including sleep-apnea and respiratory equipment, oxygen therapy, hospital beds, and mobility products.

AdaptHealth first disclosed the incident in a filing with the U.S. Securities and Exchange Commission (SEC) on July 2, 2026, informing that attackers accessed its systems and exfiltrated private data.

At the time, AdaptHealth’s investigation confirmed the intrusion occurred earlier and involved access to cloud-based business applications, including certain internal patient management systems, document storage platforms, and electronic health record system portals.

On June 15, an unnamed threat actor contacted AdaptHealth to demand a ransom payment in exchange for not leaking the stolen data.

AdaptHealth added that the breach occurred through a successful social engineering ploy that compromised the privileged account of a third-party contractor.

In an update on August 14, AdaptHealth informed that the compromise had occurred on June 5 and may have exposed the following data:

Full names

Contact information

Demographic information

... continue reading