DataBreachCaseFile.com
MonitoringCalifornia AG filing · September 1, 2026

Kaniksu Community Health Reports Data Breach in California

Kaniksu Community Health publicly reported a data security incident in California, revealing unauthorized access to patient data. The breach, disclosed in September 2026, compromised highly sensitive personal and health information. Individuals should review protective measures to safeguard against potential misuse of their exposed data.

State
California
Breach date
December 18, 2025
Reported
September 1, 2026

What may have been exposed

  • Full Name
  • Date of Birth
  • Social Security Number
  • Medical Record Number
  • Health Insurance ID Number
  • Diagnosis and Treatment Information
  • Prescription Information
  • Provider and Treatment Dates

Kaniksu Community Health, a provider of primary care, dental, behavioral health, and preventative services, filed notice with the California Attorney General's office regarding a data security incident. This incident, which reportedly occurred on December 18, 2025, involved unauthorized access within the organization's network environment. The official filing occurred on September 1, 2026, and the investigation status is currently listed as monitoring.

The compromised data categories detailed in public filings include Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, and Provider and Treatment Dates. Such information is routinely collected and stored by healthcare entities to facilitate patient care and billing.

Exposure of these specific data types carries significant implications for affected individuals. The combination of personal identifiers and detailed health information can increase risks of medical identity theft, fraudulent insurance claims, or unauthorized access to sensitive health services. Unlike financial information that can be easily replaced, personal and medical record details are immutable and require long-term vigilance.

Individuals who receive notification about this incident from Kaniksu Community Health are advised to take proactive steps to protect their information. It is recommended to carefully review any Explanation of Benefits (EOB) statements from health insurers for unfamiliar services or charges. Obtaining and regularly reviewing credit reports from the three major bureaus (Equifax, Experian, and TransUnion) can help detect unauthorized activity, and placing a fraud alert or credit freeze on credit files should be considered. Additionally, be cautious of unsolicited communications, especially those requesting personal or health information, as they could be phishing attempts.

Source: California Attorney General filing

More California data breach cases