PrivacySignal
Breach

Unlimited Technology Systems Data Breach Affects 3.8 Million Patients

DataBreaches.net · · International · Data Breaches

Unlimited Technology Systems, an Ohio-based revenue cycle management company serving healthcare providers, suffered a data breach in October 2025 that exposed information belonging to approximately 3.8 million patients. The breach was discovered days after it occurred and publicly reported months later.

Why this matters: Revenue cycle management companies sit in the middle of healthcare billing. They touch patient names, insurance details, diagnoses, and financial records for millions of people who never chose to share data with them directly. When they get breached, patients have no idea their information was even there. 3.8 million people is not a rounding error. The gap between when this breach happened and when it became public news is also worth paying attention to — that is a long time to be exposed without knowing it.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Related stories

Breach
New York Times — Tech · · International

The White House’s Secret A.I. Rules + The State of Model Alignment With METR’s Chris Painter + The Final Hot Mess Express

The White House has not publicly released its artificial intelligence policy plan, but some details have reportedly leaked to news outlets. The administration has offered little official communication about its AI rules or direction.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
Breach
BleepingComputer · · International

Real emails, hijacked payments: Two H1 2026 attack chains

Gen's H1 2026 Threat Report examines two separate attack chains. One used compromised business inboxes and browser manipulation in a banking-malware campaign, while the other used clipboard hijacking to redirect cryptocurrency payments. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

AU: Hackers leak sensitive Victorian court data to dark web

Personal data belonging to users of Victorian regional courts in Australia was posted to a dark web forum in July, triggering a police investigation. The leaked information includes names, email addresses, and job titles of people who participated in online court hearings.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · General readers · Policy

#breach#enforcement#privacy Read original →
Breach
DataBreaches.net · · International

Cardiology Associates of Port Huron remains silent although they were allegedly hacked and had patient data stolen in June.

Cardiology Associates of Port Huron has not publicly responded to claims by a threat group called Orova that it hacked the medical practice and stole patient data in June. The group, one of roughly four dozen new actors targeting U.S. healthcare in early 2026, listed the cardiology practice on a dark web leak site.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →