California: Paradigm Healthcare Services Reports Major Data Breach
Paradigm Healthcare Services, a California-based healthcare provider, reported a data breach in September 2026 that occurred in October 2025. The incident exposed sensitive personal and health information, including Full Name, Social Security Number, and Medical Record Number, creating potential risks for affected individuals.
- State
- California
- Breach date
- October 8, 2025
- Reported
- September 14, 2026
What may have been exposed
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Prescription Information
- Provider and Treatment Dates
- Billing and Financial Information
Paradigm Healthcare Services, operating in California, publicly reported a data security incident to regulators. This unspecified breach took place on October 8, 2025, and the official report was filed on September 14, 2026, according to public disclosures.
The reported breach involved the exposure of several categories of sensitive personal and health information. These categories include Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, Provider and Treatment Dates, and Billing and Financial Information. The exposure of such immutable personal and health identifiers can lead to long-term risks, including various forms of identity theft and financial fraud.
Individuals potentially affected by this incident are advised to remain vigilant. It is recommended to regularly review Explanation of Benefits (EOB) statements, medical bills, and credit reports for any unauthorized activity. Placing a fraud alert or credit freeze on credit files can also help prevent new accounts from being opened fraudulently. Additionally, be cautious of any unsolicited communications asking for personal details.
This case file documents information based on Paradigm Healthcare Services' official filing regarding the data security incident, confirming the reported dates and the types of data involved. The investigation status is currently listed as "monitoring" by the company.