← Blog

AdaptHealth Data Breaches: Full Timeline Through 2026

Share on X

People search AdaptHealth data breach timeline because regulated data and trust are existential—one incident triggers class actions and regulator exams. BreachHistory indexes 1 AdaptHealth-linked incident (1 company-confirmed). This page maps every attested event through 2026 with internal links to canonical records.

Why AdaptHealth breach history matters

AdaptHealth operates in Healthcare (United States). Across indexed rows, recurring themes include ransomware and extortion, credential theft and social engineering, third-party and supply-chain exposure, unverified actor or scraping claims. Understanding the chronological pattern helps security teams, customers, and regulators separate confirmed disclosures from forum marketing.

Full timeline through 2026

2026 — ShinyHunters breach; contractor social-engineering; PHI exfiltrated (Jun)

Verified breach. Verified material cybersecurity incident — disclosed via SEC Form 8-K July 2026. AdaptHealth Corp., a publicly traded home medical equipment and sleep/diabetes supply provider, reported that on June 15, 2026 a threat actor contacted the company claiming stolen patient files. Forensics determined certain cloud-based business applications were accessed, including internal patient-management systems and document storage platforms, with PII and PHI exfiltrated. AdaptHealth attributed the intrusion to social engineering Exposed categories include Exfiltrated patient PII and PHI from cloud business applications including internal patient-management systems and document storage; stored password file tied to insurance billing . No attested victim count is published for this row yet. See the adapthealth-shinyhunters 2026 record and canonical BreachHistory entry.

Patterns and analysis

  • Ransomware and extortion — appears across multiple AdaptHealth catalog entries; prioritize controls that address this class of failure.
  • Credential theft and social engineering — appears across multiple AdaptHealth catalog entries; prioritize controls that address this class of failure.
  • Third-party and supply-chain exposure — appears across multiple AdaptHealth catalog entries; prioritize controls that address this class of failure.
  • Unverified actor or scraping claims — appears across multiple AdaptHealth catalog entries; prioritize controls that address this class of failure.
  • Record-count hygiene — BreachHistory indexes actor-cited figures separately from company-confirmed totals; read each row's technicalWriteup before treating counts as fact.
  • 2026 monitoring — New disclosures roll into this timeline as they are verified or labeled unverified per catalog policy.

What to do if you may be affected

  1. Step 1: Enable phishing-resistant MFA on every account tied to this brand.
  2. Step 2: Use unique passwords and a password manager—breach rows often involve credential reuse.
  3. Step 3: Monitor official company breach notices and regulator filings, not dark-web downloads.
  4. Step 4: Watch for medical-ID theft and billing fraud after health-data incidents.
  5. Step 5: Bookmark the AdaptHealth company page for new 2026+ disclosures.

Canonical BreachHistory hub

Explore every indexed row: breachhistory.com/adapthealth · Latest: adapthealth-shinyhunters2026.

Sources: BreachHistory catalog (1 row for AdaptHealth), company and regulator disclosures cited in individual breach records.