In January 2026, Mid Michigan Medical Billing Service experienced a data breach stemming from a ransomware attack by the Qilin ransomware group. The company is classified as a business associate within the healthcare ecosystem.
The breach exposed Social Security numbers and potentially other personally identifiable information for 28,185 individuals. The full extent of data types compromised beyond Social Security numbers, official breach notification statements, and attorney general filings have not yet been publicly confirmed.
Additional documentation, such as formal breach notification letters, attorney general filings, and potential litigation, may emerge as the situation develops.