DisclosureLens
HackingHealthcareHealthcareData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIdentity (basic)Government IDFinancial accountMediumContained

zHealth, Inc.

bd_09565557447b8e65 · schema v1 · pii pii-v2

Severity

Medium

Discovered

Jun 15, 2026

Filed

Sep 11, 2026

To disclose

13 weeks

Affected

Not disclosed

Linked

3 filings

Confidence

69%

zHealth, Inc. notified the California Attorney General of a data breach where an unauthorized third party copied information from its network between January 20-21, 2026. The company became aware of the incident on June 15, 2026. Affected data may include names, addresses, Social Security numbers, and financial account information. zHealth retained forensic specialists and is providing 12 months of credit monitoring and fraud assistance to affected individuals.

Leak gap clock Leak >180d13 weeks discovery → filing

Incident timeline

undetected · 146 days
discovery → filing · 13 weeks / 88 days

Jan 20, 2026

Begins

Jun 15, 2026

Discovered

Sep 11, 2026

Filed

vs. sector median

+2 wks slower

This filing is one of 3 about the same incident.View merged incident
A leak claim by kazu about this victim predates this filing by 228 days.View originating leak claim

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
California State AGSep 11 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.