Data breach
Centra Care
- Records
- 782,282
- Breach date
- 31 May 2023Estimated
- Added
- 4 December 2024
What was exposed
8 types of data
- Account balances1
- Doctors' names1
- Email addresses1
- Names1
- Home addresses1
- Insurance providers1
- Medical diagnoses1
- Phone numbers1
About this breach
Cloud, that contains 782,282 records. Our team estimates the breach occurred on or around May 31, 2023. The listing, filed under the domain centracare.com, was added to our database on December 4, 2024. No hacker or group has claimed responsibility for it in our records.
The estimated attack date falls on the same day a serious flaw in Progress Software's MOVEit file-transfer tool became public in 2023, an exploit that set off a wave of attacks on organizations across healthcare. Independent reporting by Becker's Hospital Review documented that Virgin Pulse, a vendor that sends patient notifications for hospital systems, was attacked through MOVEit, and that health systems using it reported large patient exposures. Our team has not confirmed which vendor or pathway carried the CentraCare data, so the timing should be read as an estimate rather than a confirmed attack date. No ransom amount or victim count beyond the indexed records has been verified, and we could not locate a confirmed public notice from CentraCare tied to this specific listing as of September 25, 2026.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
What Information Was Compromised?
Our analysis found the following data types in this breach: email addresses, phone numbers, names, home addresses, treating doctor names, medical diagnoses, insurance provider details, and account balances. The exact quantity of each field has not been determined, so we cannot say how many records contain every category.
Not every individual is affected by every type of data listed here.
No Social Security numbers or payment card details were identified in the indexed fields, but the combination of clinical and financial information is significant on its own.
What Are the Potential Risks for Affected Individuals?
Medical records and billing data carry risks that outlast most credit breaches. Diagnosis codes and doctor names paired with a full name and address can be used for medical identity theft, where someone else receives care under your identity. Insurance details combined with account balances can support fake billing or collection calls that sound convincing because they reference real care. The same contact information fuels highly personalized phishing, including messages that quote a real diagnosis or a real clinic visit to build trust. Because health data cannot be replaced the way a card number can, misuse can surface years later on insurance statements and medical files.
What Should You Do If You Were Affected?
Watch your insurance statements and explanation of benefits for visits, prescriptions, or providers you do not recognize, and dispute anything unfamiliar with your insurer.
Place a fraud alert or security freeze with the three credit bureaus, Equifax, Experian, and TransUnion. It is free.
Be cautious with emails, texts, or calls that mention medical care, a balance owed, or an insurance matter. Contact CentraCare through a number you look up yourself, never through the message.
Use unique passwords on any patient portal and health-related accounts, and turn on two-factor authentication where it is offered.
Check your annual free credit reports at annualcreditreport.com for accounts you did not open.
If you receive a breach notice from CentraCare or a vendor, follow its instructions and enroll in any monitoring it offers.
