Data Breach & Privacy
Blog > Data Breach & Privacy
Advantage Home Health Care Data Breach: Indiana Patients and Staff Notified
Advantage Home Health Care, an Indiana home care provider, says an intruder who reached one of its servers in June 2026 acquired documents that may include patient and employee Social Security numbers. Here is what its notice and federal filing show, and what to do next.

What Happened in the Advantage Home Health Breach
A server intrusion that began on June 9, 2026
Advantage Home Health Care, which refers to itself as AHHC, says it became aware on June 16, 2026, that an unauthorized third party had gained access to one of its computer servers. According to its August 25 notice, the company learned on June 26 that the intruder had acquired data that may have included personal information, and its investigation traced the original access back to June 9.
AHHC says it followed its incident response plans, stopped the activity, brought in security and forensic experts, and notified and worked with U.S. federal law enforcement. Threat-intelligence firm DeXpose reported that a ransomware group known as TheGentlemen claimed responsibility on July 17, 2026, in an extortion notice threatening to leak sensitive data unless negotiations began. The company’s notice does not name any group, and the claim has not been independently verified.
What Information May Have Been Involved
Different data for patients, employees and plan members
The company says the information involved varies by person. For patients, it could include first and last name, date of birth, Social Security number, address, phone number, and information about medical conditions and care received. For current and former employees, it could include the same identifying details plus information about their employment with AHHC.
For employees who were enrolled in the AHHC employee health plan, the notice says the information could also include health insurance and plan enrollment information, claims information, healthcare provider information, and information about health benefits. In its report to Massachusetts regulators, which covered a single resident of that state, the company also marked financial account information as involved, a category its public notice does not list.
Who May Be Affected by the Advantage Home Health Breach
19,851 people reported to federal regulators
AHHC is based in Muncie and describes itself as one of the largest home care providers in Indiana, with nine locations serving 46 counties. Its services range from personal care and housekeeping to skilled staffing, pediatric care and high-tech patient care. The notice’s offer of services for parents and guardians of affected minor patients indicates that children are among those involved, along with adult patients and current and former employees.
The breach report AHHC filed with the U.S. Department of Health and Human Services on August 25, 2026, lists 19,851 affected individuals and describes a hacking incident involving a network server. Massachusetts’ breach report shows one affected resident there. As of this writing, the incident does not appear on the lists maintained by the California, Vermont or Texas attorneys general.
How Advantage Responded and What It Is Offering
Twelve months of Cyberscout services for adults and minors
Beyond containing the attack, AHHC says it scanned its environment, added security measures, and will keep evaluating security protocols, continuous monitoring and staff training. The notice also says the company made diligent efforts to prevent the intruder from keeping, further using or disclosing the data it acquired, and that it is not aware of any misuse.
Eligible adults are being offered 12 months of single-bureau credit monitoring, a single-bureau credit report and score, and cyber monitoring through Cyberscout, a TransUnion company, at no charge. Parents and guardians of affected minor patients can receive cyber monitoring for themselves and their children for the same period. Enrollment deadlines differ for adults and minors, so the letter each person received controls the timing.
Steps You Can Take to Protect Yourself
Steps for home care patients, families and caregivers
Many home care patients are older adults or children who may not monitor their own credit, so relatives and caregivers may want to help with these precautions:
- Enroll with the code in your letter before its deadline. Adults and minors have different enrollment terms, so check the date printed on each household member’s letter.
- Consider freezing credit for older adults and children. Social Security numbers were among the data involved, and a freeze for a child under 16 is free at Equifax, Experian and TransUnion, just as it is for adults.
- Review Medicare, Medicaid or private insurance statements for care that never happened. Unfamiliar visits, equipment or services can signal medical identity theft.
- Employees in the AHHC health plan should check their claims history. Plan enrollment and claims data were potentially involved, so look for claims or providers you do not recognize.
- Be skeptical of unexpected calls or texts about the incident. Scammers often reference real breaches, so confirm any request through a source you find yourself before sharing information.
This overview is general information rather than legal advice. A legal professional can explain which rights may apply in your circumstances.
Talk to Wilshire Law Firm
Did Advantage Home Health Care notify you about the breach?
Did an AHHC letter tell you that your Social Security number or medical information may have been involved, or did one arrive for a parent or child in your care? Wilshire Law Firm’s nationally recognized, award-winning team works with people affected by health care data breaches, and our data breach and privacy lawyers can explain whether this incident may support individual or class action claims. We are available 24/7 for free consultations and free case reviews with a legal professional, and there are no fees unless you get paid.
Reach out to Wilshire Law Firm today to have your Advantage Home Health Care letter reviewed.
FAQs
According to the company’s notice, an unauthorized party first gained access to one of its servers on June 9, 2026. AHHC became aware of the incident on June 16, learned on June 26 that data had been acquired, and posted its notice on August 25, 2026.
The company’s report to the U.S. Department of Health and Human Services lists 19,851 affected individuals. AHHC has not broken that figure down between patients and employees.
For patients, the notice says the data could have included names, dates of birth, Social Security numbers, addresses, phone numbers, and information about medical conditions and care received. The specific elements vary from person to person.
Yes. Current and former employees may have had names, dates of birth, Social Security numbers, addresses, phone numbers and employment information involved, and those enrolled in the employee health plan may also have had insurance, enrollment, claims and benefits information involved.
Eligible adults can enroll in 12 months of Cyberscout single-bureau credit monitoring, a credit report and score, and cyber monitoring at no charge. Parents and guardians of affected minor patients can get cyber monitoring for themselves and their children for 12 months, using the enrollment code and deadline in their letter.
Threat-intelligence reporting says a group called TheGentlemen claimed responsibility on July 17, 2026. AHHC’s notice does not name the group, and the claim has not been independently confirmed.
You may have options. The company says data that may include Social Security numbers and medical information was acquired, nearly 20,000 people were reported affected, and notice came about ten weeks after AHHC became aware of the incident. Breaches with those facts are often evaluated for class action treatment, but whether a claim fits your situation depends on details a free case review can help clarify.

