Incident tracker

Recent cyber attacks and data breaches

DisclosedCompanyWhat happenedTypeRecordsSource
2026-07-17Quontic Bank Acquisition Corp.Quontic Bank Acquisition Corp.: a data breach

Quontic Bank Acquisition Corp. notified the California Attorney General of a data breach on July 17, 2026. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-07-17The Estée Lauder CompaniesThe Estée Lauder Companies: a data breach

The Estée Lauder Companies notified the California Attorney General of a data breach on July 17, 2026, with the breach dated August 9, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-07-17The Estée Lauder Companies (Oracle)The Estée Lauder Companies (Oracle): a data breach

The Estée Lauder Companies (Oracle) notified the Washington State Attorney General on July 17, 2026 of a data breach that occurred on August 9, 2025, affecting 2,110 Washington residents. Information involved: Name, Social Security Number, Financial & Banking Information, Full Date of Birth, Passport Number, Medical Information, Other.

Data breach
Not disclosedWashington State Attorney General
2026-07-17The Association for Neurologically Impaired Brain Injured

Healthcare

The Association for Neurologically Impaired Brain Injured: a health data breach

The Association for Neurologically Impaired Brain Injured, a healthcare provider in NY, reported a breach of health information affecting 1,918 people to the US Department of Health and Human Services on July 17, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
1,918HHS Office for Civil Rights
2026-07-17One Medical Group, Inc.

Healthcare

One Medical Group, Inc.: a health data breach

One Medical Group, Inc., a healthcare provider in CA, reported a breach of health information affecting 153,174 people to the US Department of Health and Human Services on July 17, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
153,174HHS Office for Civil Rights
2026-07-17James C. Standring, DDS

Healthcare

James C. Standring, DDS: a health data breach

James C. Standring, DDS, a healthcare provider in CA, reported a breach of health information affecting 6,658 people to the US Department of Health and Human Services on July 17, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
6,658HHS Office for Civil Rights
2026-07-17ZenPatient, Inc.

Healthcare

ZenPatient, Inc.: a health data breach

ZenPatient, Inc., a healthcare provider in CA, reported a breach of health information affecting 15,749 people to the US Department of Health and Human Services on July 17, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
15,749HHS Office for Civil Rights

+2 more

2026-07-17Community Based Care of Brevard dba Family Partnerships of Central Florida

Healthcare

Community Based Care of Brevard dba Family Partnerships of Central Florida: a health data breach

Community Based Care of Brevard dba Family Partnerships of Central Florida, a health plan in FL, reported a breach of health information affecting 8,151 people to the US Department of Health and Human Services on July 17, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
8,151HHS Office for Civil Rights
2026-07-17CLOVER HEALTH INVESTMENTS, CORP. /DECLOV

Hospital & Medical Service Plans

CLOVER HEALTH INVESTMENTS, CORP. /DE disclosed a cybersecurity incident

On July 4, 2026, Clover Health Investments, Corp. (the "Company") became aware of anomalous login activity on certain of its information systems. The Company immediately activated its incident response procedures, initiated an investigation with assistance from leading third-party cybersecurity experts, and took steps to contain the activity. The Company also notified law enforcement. The investigation subsequently showed that a threat actor gained access to three non-managerial health plan employee accounts through social engineering. Based on preliminary findings from the Company's investigation, those accounts were assigned to employees who had member visit-scheduling and broker-facing sales functions. The employee accounts had access to certain personally identifiable information and protected health information, but had no access to corporate financial or claims systems. While the investigation is ongoing into the precise nature, scope, and extent of data that was subject to unauthorized access and acquisition, the Company believes that its rapid response successfully contained and terminated the unauthorized access. Based on information available as of the date of this filing, the Company does not believe that the incident has had, or is reasonably likely to have, a material impact on its business, financial condition or results of operations. The Company takes the privacy and security of its member data very seriously and has taken, and continues to take, steps to further harden its IT environment. The Company continues to evaluate applicable regulatory and legal notification requirements and will make all required notifications based on its findings, including to impacted members. Forward-Looking Statements This Current Report on Form 8-K (the "Form 8-K") contains forward-looking statements within the meaning of Section 27A of the Securities Act of 1933, as amended, and Section 21E of the Securities Exchange Act of 1934, as amended. Forward-looking statements include statements regarding future events and the Company's future results of operations, financial condition, market size and opportunity, business strategy and plans, and the factors affecting our performance and our objectives for future operations. Forward-looking statements are not guarantees of future performance and you are cautioned not to place undue reliance on such statements. In some cases, you can identify forward looking statements because they contain words such as "may," "will," "should," "expects," "plans," "anticipates," "going to," "can," "could," "should," "would," "intends," "target," "projects," "contemplates," "believes," "estimates," "predicts," "potential," "outlook," "forecast," "guidance," "objective," "plan," "seek," "grow," "if," "continue" or the negative of these words or other similar terms or expressions that concern the Company's expectations, strategy, priorities, plans or intentions. Forward-looking statements in the Form 8-K include, but are not limited to, the following: estimates regarding the potential impact of the cybersecurity incident, ongoing remediation efforts, future operational recovery and potential financial losses. These forward-looking statements are based on current expectations and are subject to inherent risks, uncertainties, and assumptions that are difficult to predict. Factors that could cause actual results to differ materially include, but are not limited to, the scope and duration of the incident, the nature of the compromised data, the outcome of any regulatory investigations or litigation, and our ability to successfully implement our remediation plans. Additional information concerning these and other risk factors is contained under Item 1A. "Risk Factors" in our most recent Annual Report on Form 10-K filed with the Securities and Exchange Commission (the "SEC") on February 27, 2026, as such risks may be updated in our subsequent filings with the SEC. The forward-looking statements included in t

Regulatory filing
Not disclosedSEC EDGAR
2026-07-16QuestoQuesto: a data breach

Questo notified the California Attorney General of a data breach on July 16, 2026, with the breach dated October 1, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General

About this tracker

435
Incidents
298
Ransomware gang claims
733
Last 30 days
401
Companies tracked
2,742,501,669
Records disclosed