Doctor.com, a US-based healthcare company, experienced a ransomware attack announced by the Qilin group on March 29, 2026. This incident shows the company is in the negotiation phase with the threat actors, and they have not publicly released data.
Specific details regarding the types of data exposed, the number of individuals affected, and the states impacted have not been publicly confirmed. It remains unclear whether highly sensitive information such as SSNs, medical records, or financial data was involved. Doctor.com has not yet issued official breach notification statements or letters.
Data breach details can emerge over time as investigations proceed and legal requirements are met. Notices to affected individuals may be delayed.