DisclosureLens
FEDERALItem 1.05 · mandatoryMalwareHealthcareTechnologyHealthcareRansomwarePhishingData ExfiltratedData EncryptedRansom DemandedCustomer Data InvolvedMulti-Stage ChainPHIPIIIP / systemLowActive

iRhythm Holdings, Inc.

bd_796cd6508efce5fd · schema v1 · pii pii-v1

Severity

Low

Discovered

Jun 8, 2026

Filed

Jun 15, 2026

To disclose

7 days

Affected

Not disclosed

Confidence

66%
Full breach record for iRhythm Holdings, Inc.

iRhythm Holdings, Inc. disclosed a material cybersecurity incident on June 15, 2026. On June 8, 2026, the company identified unauthorized activity involving data on third-party-hosted business applications. A threat actor demanded ransom for proprietary data, patient PHI, and personal information. The company confirmed data exfiltration via social engineering but stated patient safety and clinical systems were unaffected. The incident is ongoing.

SEC clockMateriality determined Jun 10, 2026Filed Jun 15, 20265d SEC 4-day OK7 days discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

discovery → filing · 8 days

Jun 8, 2026

Discovered

Jun 10, 2026

Scope determined

Jun 15, 2026

Filed

vs. sector median

11 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statementThis record

Unlocks: materiality, stated response, full audit trail. Ceiling removed.