FEDERALItem 1.05 · mandatoryMalwareRansomwarePhishingData ExfiltratedData EncryptedRansom DemandedCustomer Data InvolvedMulti-Stage ChainPHIPIIIPLowActive
iRhythm Holdings, Inc.
bd_796cd6508efce5fd · schema v1 · pii pii-v1
Full breach record for iRhythm Holdings, Inc. →iRhythm Holdings, Inc. disclosed a material cybersecurity incident on June 15, 2026. On June 8, 2026, the company identified unauthorized activity involving data on third-party-hosted business applications. A threat actor demanded ransom for proprietary data, patient PHI, and personal information. The company confirmed data exfiltration via social engineering but stated patient safety and clinical systems were unaffected. The incident is ongoing.
SEC clockMateriality determined Jun 10, 2026 → Filed Jun 15, 20265d ✓ SEC 4-day OK7 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1388658/000138865826000055/irtc-20260610.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jun 15, 2026
- Raw hash
- 918979a834ee54a4b252c9bd136d6c15bdf0b4b55cd280ca9ba9d764a7e5f7d5
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- iRhythm Holdings, Inc.norm: irhythm holdings
- SEC CIK
- 0001388658
Victim entity
- Name
- iRhythm Holdings, Inc.norm: irhythm holdings
- SEC CIK
- 0001388658
Incident
- Discovered
- Jun 8, 2026
- Materiality determined
- Jun 10, 2026
- Notification sent
- Jun 15, 2026
- Affected individuals
- Not disclosed
- Data types
- PHIPIIIP
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 7 days(7 days from discovery to filing)
- Compliance flags
- SEC 4-day OK · 5d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Jun 10, 2026→ Filed: Jun 15, 20265d cal. 4 business days SEC 4-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.