Heywood Healthcare Reports Patient Data Breach in Vermont
Heywood Healthcare Inc. and its affiliated entities, including Henry Heywood Memorial Hospital, reported a data security incident to Vermont authorities on September 10, 2026. This breach involved the exposure of sensitive patient information. Affected individuals should review official notifications and consider recommended security measures.
- State
- Vermont
- Reported
- September 10, 2026
What may have been exposed
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Prescription Information
- Provider and Treatment Dates
- Billing and Financial Information
Heywood Healthcare Inc., operating with Henry Heywood Memorial Hospital, Athol Memorial Hospital, and Heywood Medical Group, Inc., submitted a data breach filing in Vermont on September 10, 2026. The filing indicates a security incident occurred where confidential patient records were accessed without authorization. The specific method of the breach was not detailed in the public report.
The types of patient data reported as exposed include Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, Provider and Treatment Dates, and Billing and Financial Information. This range of data could be significant for affected individuals.
The exposure of such detailed personal and health-related data carries potential risks, including various forms of identity theft and fraudulent use of personal information. Unlike financial credentials, certain exposed data like Social Security Numbers and medical histories are permanent, increasing the long-term impact of their compromise.
Individuals who receive an official notification letter from Heywood Healthcare or its related facilities should read it carefully to understand the specific details pertinent to their situation. It is generally advisable to remain vigilant for any unusual activity across financial accounts and healthcare statements.
To help mitigate potential risks, consider placing a fraud alert or security freeze on your credit files with the three major credit bureaus: Equifax, Experian, and TransUnion. Be cautious of any unsolicited communications requesting personal information, as these could be phishing attempts. Maintaining a record of all correspondence related to this incident is also recommended.
Source: Vermont Attorney General filing