DataBreachCaseFile.com
MonitoringTexas AG filing · September 21, 2026

Three Oaks Hospice of El Paso Reports Data Breach Affecting Patients

Three Oaks Hospice of El Paso filed a data breach report with the Texas Attorney General in September 2026, concerning an incident on July 16, 2025. This breach exposed sensitive personal and medical data, including Full Name, Social Security Number, Medical Record Number, and Diagnosis and Treatment Information. Affected individuals face potential risks such as medical identity theft and financial fraud.

State
Texas
Breach date
July 16, 2025
Reported
September 21, 2026

What may have been exposed

  • Full Name
  • Date of Birth
  • Social Security Number
  • Medical Record Number
  • Health Insurance ID Number
  • Diagnosis and Treatment Information
  • Prescription Information
  • Home Address
  • Phone Number
  • Emergency Contact Details

Three Oaks Hospice of El Paso, a healthcare provider operating in Texas, formally reported a data security incident to the Texas Attorney General on September 21, 2026. This filing indicated that an incident occurring on July 16, 2025, led to the exposure of confidential information. The specific nature or type of the breach was unspecified in the public record.

The information reported as compromised includes Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, Home Address, Phone Number, and Emergency Contact Details. This extensive list encompasses both personally identifiable information and protected health information, reflecting the comprehensive records maintained by hospice care providers.

Such a broad exposure of sensitive personal and medical data creates notable risks for affected individuals. Compromised medical details, like Medical Record Number and Diagnosis and Treatment Information, could potentially be exploited for medical identity theft, where fraudulent services or prescriptions are sought using another person's identity. The exposure of core identifiers, such as Social Security Number and Date of Birth, also presents a risk for various forms of financial fraud or identity theft.

Individuals who receive an official data breach notification from Three Oaks Hospice of El Paso should take immediate steps to safeguard their information. It is advisable to carefully review explanation of benefits (EOB) statements from health insurers for any unfamiliar medical services or claims. Monitoring credit reports for suspicious activity is also a crucial precaution.

Consider placing a fraud alert or security freeze on your credit files with the major credit bureaus (Equifax, Experian, TransUnion) to help prevent new accounts from being opened in your name without your consent. Additionally, remain vigilant for any unsolicited communications, particularly those that request personal information. Regularly changing passwords for online accounts, especially those linked to healthcare or financial services, is also recommended to mitigate potential risks.

What to do if you were affected

Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.

  • Freeze your credit

    Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.

  • Check for medical identity theft

    Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.

  • Stay alert to targeted scams

    Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.

  • Keep your notification letter

    Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.

Source: Texas Attorney General filing

Related data breach cases