Midland Care Connection, Inc., a nonprofit healthcare organization, reported a data incident in 2026 involving unusual activity in its network. The company discovered unauthorized access on or about March 31, 2026, which was determined to have occurred around March 30, 2026. A comprehensive review of the impacted data concluded on June 12, 2026, and notification letters to affected individuals began on June 29, 2026. The Nebraska Attorney General was also notified on June 29, 2026.
The breach may have involved names, Social Security Numbers, dates of birth, addresses, government IDs, medical treatment/health/insurance information, and financial account information. The total number of affected individuals has not been publicly disclosed by Midland Care Connection. The company serves individuals in Kansas and Missouri, and Nebraska is confirmed to be an affected state due to a regulatory filing. Free credit monitoring services are being offered to affected individuals.
Legal investigations are currently underway by multiple law firms, though no class action lawsuit has been officially filed. It remains unclear if additional details about the scope of the breach will be released.