LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › ZenPatient, Inc. Data Breach Notice (Washington Attorney General)

CRITICAL severityConfirmedHow we verify

ZenPatient, Inc. Data Breach Notice (Washington Attorney General): What Was Exposed & What To Do

RBRecent Breaches Breach Intelligence·July 17, 2026
ZenPatient, Inc. Data Breach Notice (Washington Attorney General)

Occurred December 05, 2025 · publicly disclosed July 17, 2026. Approximately 651 people affected.

CRITICAL
Severity
651
People affected
4
Data types exposed
July 17, 2026
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

ZenPatient, Inc. reported a data breach on July 17, 2026, that exposed the names, full dates of birth, passport numbers, and medical information of 651 individuals. The breach occurred on December 05, 2025. If you received services from ZenPatient, check your mail or the company’s site for instructions on protecting your data.

Severity & verification
CRITICAL severityConfirmed
Exposes government-ID/medical data.
Corroborated by an official disclosure or a verified breach feed.
Check your exposure
651 accounts were exposed here. We can’t confirm any single incident against the sources we search — but we can show you every leak and listing tied to your email. 15-sec check, no card.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

ZenPatient, Inc. notified Washington residents of a data breach in a filing reported to the Washington State Attorney General on July 17, 2026. According to that notice, the incident itself occurred on December 5, 2025, and involved information tied to 651 people. Named data types in the filing include name, full date of birth, passport number, and medical information.

For people whose records may have been involved, the combination of identity details and medical information raises practical concerns about misuse and long-term monitoring. Public detail beyond the attorney general filing remains limited.

Breaking down the breach

The available record is the ZenPatient, Inc. data breach notice filed with the Washington State Attorney General and reported on July 17, 2026. That filing states the company notified Washington residents and lists 651 people as affected. It places the incident on December 5, 2025.

The notice identifies exposed information as including name, full date of birth, passport number, and medical information. The filing does not describe how the incident was discovered, what systems were involved, whether access was unauthorized electronic intrusion or another cause, or how long any exposure lasted. Method, technical root cause, and broader geographic scope beyond the Washington notice are undisclosed in the material provided.

No public attribution to a specific threat group appears in the facts. Counts, dates, and data categories above are taken only from the reported notice; other operational details are unconfirmed.

How a breach like this happens

In general terms, incidents that expose patient- or client-related records often begin with compromised credentials, a vulnerable remote service, phishing that yields access to staff accounts, misconfigured cloud storage, or malware on a system that holds documents or database extracts. Once an attacker or unauthorized party can read files or query a system, copies of identity fields and clinical or administrative medical data can be taken without immediately obvious disruption.

Organizations that schedule care, manage intake, or support clinical workflows commonly store names and dates of birth alongside documents that may include passport or other government ID numbers used for identity verification, plus notes, diagnoses, treatment history, or billing-related medical information. Background patterns like these do not establish what occurred at ZenPatient; they only describe how similar exposures typically unfold when safeguards fail or access controls are bypassed. No specific actor or technique is named for this incident.

Who is ZenPatient, Inc.?

ZenPatient, Inc. is the organization named in the Washington Attorney General filing. Public materials associated with entities using similar naming often describe digital tools or services connected to patient engagement, scheduling, intake, or related healthcare administration. Exact corporate scope and product lines are not detailed in the breach notice itself.

Companies in this sector typically handle sensitive personal and health-related data because their services sit between patients, clinics, and administrative systems. A breach affecting such an organization is consequential because the data involved is both identifying and health-linked, and because even a relatively small affected population can face lasting identity and privacy risk. The filing’s focus on Washington residents indicates at least some of the impacted individuals have a connection to that state; whether operations or affected people extend further is not stated in the given facts.

The information in question

The notice lists the following as among the information exposed: name, full date of birth, passport number, and medical information. Those categories come directly from the reported filing.

Medical information, as a label, can cover a wide range of clinical or administrative content in healthcare-related contexts—such as treatment details, conditions, or related records—but the filing does not itemize which medical fields or document types were involved. Passport number is a high-value identity credential. Name and full date of birth are core identifiers that, together with the other fields, can support impersonation or targeted fraud. No additional data types are named in the facts, and exact file contents or record formats remain as described only at this category level.

Why it matters

For affected individuals, exposure of name, date of birth, and passport number can enable identity theft, fraudulent applications, or travel- and identity-document abuse. Medical information adds privacy harm and can be used for targeted scams that reference real health details to appear legitimate. These risks can persist for years because identity and health data do not expire like a single password.

For the organization, a reported breach involving hundreds of people and sensitive categories carries regulatory notice obligations, potential follow-on inquiries, and the operational cost of investigation and individual notification. The Washington filing establishes a formal public record of the event and the data types involved. Nothing in the facts assigns legal fault or describes security practices before the incident; the consequence follows from the sensitivity of the data and the confirmed notice, not from any finding of negligence stated here.

If your data was in this breach

If you believe you may be among those affected, consider steps that match the data types named. Monitor financial and credit activity for unfamiliar accounts or inquiries. Treat unsolicited calls or messages that reference your health or identity details with caution. If you use a passport number in any online or institutional setting, follow official guidance from the issuing authority on reporting possible compromise. Ask ZenPatient or your healthcare providers through official channels whether you were included in the notice and what support they offer.

Keep records of any notification you receive, and consider fraud alerts or credit freezes if you see signs of misuse. You can also run a free exposure scan of your email to check whether your information has surfaced in known breach data, which may help you judge whether credentials or addresses tied to you appear elsewhere. Public detail on this incident remains anchored to the December 5, 2025 incident date, the July 17, 2026 Washington filing, the figure of 651 people, and the named data categories; anything beyond that should be treated as unconfirmed unless a further official update appears.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

CompanyZenPatient, Inc. security record
60/100
DoxxScan™ · Moderate doxx risk
D+ 56Weak record

1 reported incident on record.

See ZenPatient, Inc.’s full breach history →

More recent breaches

Chelan County, WA Data Breach Notice (Washington Attorney General)August 11, 2026Kovack Financial, LLC Data Breach Notice (Washington Attorney General)August 10, 2026Golden Opportunities And Local Support, LLC Data Breach Notice (Washington Attorney General)August 7, 2026American Addiction Centers Data Breach Notice (Washington Attorney General)August 7, 2026

Latest breaches

Read GalaxyWarden’s full analysis of the ZenPatient, Inc. Data Breach Notice (Washington Attorney General) →

Source: Washington State Attorney General breach notification

Verified breach

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram