iRhythm Holdings, a U.S.-based digital healthcare company specializing in cardiac monitoring, has reported a major cybersecurity incident exposing personal and protected health information of approximately 12 million patients. The company disclosed the breach in a U.S. Securities and Exchange Commission filing on Monday, June 15, 2026. According to iRhythm, attackers gained unauthorized access to third-party-hosted business applications, not its internal clinical or medical device systems. The threat actors contacted the company on June 9, 2026, claiming data theft and demanding ransom. iRhythm initiated its cybersecurity incident response plan, engaged external experts, and notified law enforcement and regulators as investigations continue.
Prepared by Emily Rhodes and reviewed by editorial team.
Your privacy could be at stake. If you're one of iRhythm's 12 million patients, your personal and health data might be exposed. It's a good time to review your credit report and watch for any suspicious activity.
This breach shows that even healthcare data isn't safe from cyberattacks. iRhythm is working with experts and law enforcement to handle the situation. Remember, it's always wise to monitor your personal information closely. Worth forwarding if you know someone using iRhythm's services.
No left-leaning sources found for this story.
No right-leaning sources found for this story.
Comments