DataBreachCaseFile.com
MonitoringIndiana AG filing · August 26, 2026

The Health Trust & FASS Data Breach Exposes Indiana Patient Data

The Health Trust & its subsidiary FASS reported a data breach in Indiana impacting sensitive personal and medical information. This incident, reported in August 2026, exposed data including Full Name, Date of Birth, Social Security Number, and comprehensive health details. Individuals face potential risks such as identity theft and medical fraud due to the compromised data.

State
Indiana
Breach date
March 26, 2025
Reported
August 26, 2026

What may have been exposed

  • Full Name
  • Date of Birth
  • Social Security Number
  • Medical Record Number
  • Health Insurance ID Number
  • Diagnosis and Treatment Information
  • Prescription Information
  • Provider and Treatment Dates

On August 26, 2026, The Health Trust and its subsidiary FASS, operating in Indiana, reported a data security incident to regulatory authorities. This breach, discovered on March 26, 2025, involved an unspecified type of security event within their systems. As organizations managing extensive health and personal records, they serve as custodians for sensitive individual information.

The reported exposure included a range of highly sensitive personal and health data. Specifically, the compromised information includes Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, and Provider and Treatment Dates. This broad spectrum of exposed data presents significant concerns for affected individuals.

The exposure of such detailed information can lead to various forms of misuse. For example, a compromised Social Security Number can be used for financial identity theft, while exposed medical and insurance identifiers could facilitate medical identity fraud. Individuals receiving notifications should understand the potential for fraudulent activity stemming from this incident.

Individuals who receive a breach notification letter from The Health Trust or FASS should take protective measures. It is advisable to carefully review explanation of benefits (EOB) statements and medical bills for unfamiliar services. Consider placing a fraud alert or security freeze on your credit reports with the three major credit bureaus (Equifax, Experian, and TransUnion) to help prevent unauthorized accounts from being opened in your name.

Additionally, monitor financial accounts and credit reports regularly for any suspicious activity. If any unusual activity is detected, report it immediately to the relevant financial institution or credit bureau. Remaining vigilant is key to mitigating potential harm from this data exposure.

What to do if you were affected

Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.

  • Freeze your credit

    Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.

  • Check for medical identity theft

    Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.

  • Stay alert to targeted scams

    Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.

  • Keep your notification letter

    Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.

Source: Indiana Attorney General filing

Related data breach cases