Start your day with intelligence. Get The OODA Daily Pulse.

Home > Briefs > Cyber > Unlimited Technology Systems Data Breach Affects 3.8 Million Patients

Unlimited Technology Systems Data Breach Affects 3.8 Million Patients

On July 23, 2026, the HIPAA Journal reported on a data breach at Unlimited Technology Systems, a Montgomery, Ohio-based provider of revenue cycle management services. At the time, the scale of the data breach had yet to be made public, but it has recently been confirmed to be the largest healthcare data breach of the year to date, ahead of the 3.4 million-record data breach at Trizetto Provider Solutions. According to the breach summary on the HHS’ Office for Civil Rights data breach portal, the Unlimited Technology Systems data breach involved the protected health information of 3,803,750 individuals. While the incident was confirmed in July, it was first identified in October 2025. The threat actor had access to its network between October 5 and October 10, 2025, and potentially exfiltrated files containing patient data (as detailed below). No threat group appears to have claimed responsibility for the cyberattack.

Full report : Intrusion at US healthcare software provider puts 3.8M people’s data at risk.