TriZetto Provider Solutions, a healthcare technology company, experienced a data breach due to unauthorized web portal access spanning from approximately October 2024. The breach was detected in October 2025 and subsequently reported starting in February 2026 by TriZetto and various downstream healthcare entities.
The breach exposed Protected Health Information (PHI), financial records, provider credentials, and personal information including names, dates of birth, phone numbers, email addresses, health plan information, and account data for an estimated 3,433,965 individuals. The full scope of data types and affected individuals continues to be clarified, as at least 44 HIPAA-covered entities reported separate notifications for the same incident, suggesting broad impacts across the healthcare supply chain.
Details surrounding data breaches, particularly those affecting multiple entities, often emerge and evolve over time. While initial notifications have been issued, further information may become available.