Skip to main content
Back to overview
High

Ultrahuman Data Breach Exposes Customer Wellness Data

Wearable health-tech startup Ultrahuman confirmed a data breach where hackers accessed customer wellness data through credentials stolen from an employee's malware-infected laptop.

Key points

  • Breach occurred on March 27, 2026, and was disclosed around June 3-4, 2026.
  • Hackers gained access via credentials stolen from an employee's malware-infected laptop.
  • Affected data included contact details, order/transaction history, and for a smaller group, fitness-related data.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

Published
Jun 3, 2026
Updated
Jun 19, 2026
Confidence
High
Evidence
1 source

Structured assessment

Signal analysis

This analysis groups the signal by industry, likely incident action and impacted security area. It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Malware activity

Watch ransomware, endpoint compromise and business interruption exposure.

  • Source type: possible insider or internal misuse

Business impact

Potential extortion or operational risk
Impact area
Confidentiality
Likely asset
User or customer data

Mentioned entities

UltrahumanData DisclosureUltrahumanApproximatelyHackersAffected

Quick context

Questions about this signal

What happened in this signal?

Wearable health-tech startup Ultrahuman confirmed a data breach where hackers accessed customer wellness data through credentials stolen from an employee's malware-infected laptop. Approximately 0.1% of its user base was affected.

When was this signal reported?

Shadow Tier lists Jun 3, 2026 as the signal date.

Which organization is connected to this signal?

Ultrahuman is the organization connected to this public signal.

Explore Ultrahuman