Skip to main content
Back to overview
Medium

Union Health System, Inc. Discloses Data Breach Affecting 262,831 Individuals

Data breaches have become an all-too-common reality for businesses in 2026.

Key points

  • Data breaches have become an all-too-common reality for businesses in 2026. From small startups to huge corporations, these breaches are impacting everyone and understanding the full scope of the problem is the first step to preventing your business
  • Union Health System, Inc. Discloses Data Breach Affecting 262,831 Individuals

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

02

Likely method

Ransomware

Malware, Social activity

03

Potential impact

Data Exposure

Confidentiality, Availability

Published
Apr 21, 2026
Updated
Aug 5, 2026
Confidence
Medium
Evidence
1 source

Structured assessment

Signal analysis

This analysis groups the signal by industry, likely incident action and impacted security area. It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Malware, Social activity

The feed marks multiple actor roles. Treat this as a review signal rather than a final attribution.

  • Source type: possible insider or internal misuse
  • Source type: supplier or third-party involvement

Business impact

Potential operational disruption
Impact area
Confidentiality, Availability
Likely asset
User or customer data

Mentioned entities

UnionhealthData DisclosureInc. Discloses Data Breach AffectingFromAdditionallyRansomwareThatTypesCostStatistics

Quick context

Questions about this signal

What happened in this signal?

Data breaches have become an all-too-common reality for businesses in 2026. From small startups to huge corporations, these breaches are impacting everyone and understanding the full scope of the problem is the first step to preventing your business from falling victim. Additionally, the consequences of these breaches are nothing if not substantial. Ransomware attacks, phishing schemes, and even weak passwords are wreaking havoc on businesses, forcing some to shutter their doors when these attacks become too much to bare. That’s why we want to spread the word and keep businesses in the know about what kind of companies are being hit with data breaches, so you can understand exactly how big the problem is and how you can keep your business safe in 2026. Types : Data breaches are the result of a number of types of cyber attacks, including phishing schemes, ransomware attacks, malware, and social engineering. Cost : Statistics vary, but most studies put the cost of a data breach between one and ten million dollars. Business size : No matter the size of your business, data breaches are possible, with big names like McDonald’s and Adidas falling victim. Prevention : Businesses can prevent data breaches by training staff and shoring up cybersecurity measures like two-factor authentication. Lansing Community College: Reportedly, the community college was targeted in February 2026, with more than 170,000 people possibly affected. The college claims that it has “no evidence” that stolen information has been “misused.” Xsolis, Inc:  The Tennessee-based healthtech company reveals that it was breached in January 2026 by a suspected phishing attack. As many as 1,396,519 individuals were affected, with Social Security numbers and health insurance information thought to have been stolen. Carnival Corporation:  The world’s largest leisure travel and cruise company discloses that it has suffered a massive data breach, with almost 6 million customers thought to have been affected. Compromised information included names, addresses, emails, phone numbers, and dates of birth. GitHub:  GitHub confirms a data breach that saw the loss of about four thousand developer code repositories. One threat actor that typically targets open source ecosystems for financial gain, TeamPCP, has taken credit. TeamPCP says it is not offering a ransom, but will instead sell the stolen internal source code and organization data. Open Loop Health : The telehealth platform provider gives more details on a data breach that took place in January: 716,000 individuals were compromised in a breach caused by an unauthorized third party that exfiltrated files containing data including names, addresses, email addresses, dates of birth, and medical information. Instructure : Edtech and learning management company Instructure was breached multiple times by the ShinyHunters extortion gang, prompting the company to pay a ransom in order to regain access to its own data. The cause (at least for the initial breach) was a disruption to certain tools relying on API keys, with a preported loss of 3.65 terabytes of data impacted nearly 9,000 schools worldwide. Heritage Bank:  The financial services company reveals that it suffered a data breach between March and April 2026. Personal information belonging to 182,793 individuals is potentially compromised, although the nature of the information is still unknown. Texas Tech University Health Sciences Center:  The Oregon Department of Justice reveals that the university department suffered a massive cyberattack in September 2024, with over 800,00 individuals potentially affected. illumifin Corporation:  The insurance company is subject to a wide-ranging data breach. It is thought that 97,781 individuals may be affected, with the type of breach and nature of the compromised information still unknown. Restaurant Management Company of Wichita, Inc:  The hospitality company experiences a data breach thought to impact up to 52,017 people. Compromised information includes names, addresses, Social Security numbers, and more. Ameriprise Financial, Inc:  The financial services company discloses to the Oregon Department of Justice that it was breached in March 2026. The type of information compromised is unknown, but it is thought that as many as 47,876 individuals are affected. Impac Mortgage Holdings, Inc:  The mortgage broker reveals that it was affected by a massive cyberattack between February and March 2024. It is thought that up to 61,066 individuals have been affected, with the exposed information still unknown. Georgia Heritage Federal Credit Union:  Maine Attorney General notifies affected individuals, who could reach up to 43,077, that the credit union was subject to a ransomware attack in January 2025. Innovative Scientific Solutions, LLC: The South Carolina healthcare provider experiences a cyberattack potentially affecting 143,842 individuals. At the time of the writing, both of the origin of the breach and the compromised information are unknown. Iowa Department of Health and Human Services: The state department experiences a massive data breach resulting in the exposure of Medicaid data belonging to more than 6,000 people. Community Psychiatry Management:  California-based practitioner announces that it has experienced a wide-ranging cyberattack, with the personal and health information of around 14,000 individuals exposed in the process. Cookeville Regional Medical Center: More than 330,000 people are thought to have been affected by a massive data breach against the healthcare practitioner. The breach took place in July 2025, with its discovery only recently coming to light.

When was this signal reported?

Shadow Tier lists Apr 21, 2026 as the signal date.

Which organization is connected to this signal?

Unionhealth is the organization connected to this public signal.

Explore Unionhealth
Which attack pattern is relevant?

This signal is connected to current ransomware incidents based on its reported incident context.

Explore current ransomware incidents
Which impact area is relevant?

This signal is connected to data exposure and breach intelligence based on its reported consequences.

Explore data exposure and breach intelligence