HackingStolen CredentialsCapture App DataCustomer Data InvolvedDelayed DiscoveryPHIPIILowContained
OPTION CARE HEALTH, INC.
bd_c016a22c279aa011 · schema v1 · pii pii-v1
Full breach record for OPTION CARE HEALTH, INC. →Option Care Health, Inc. discovered that an employee's email account was accessed without authorization between February 6–9, 2026. The incident was identified on February 26, 2026. Potentially accessed information included names, dates of birth, medical record numbers, and treatment information. A forensic security firm was engaged to assist. The notice was filed with the California AG.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-621411
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 1, 2026
- Raw hash
- 9ed0cadb30b9e012dee9f89e801d6aa446610f9305b8548c1c1151bef3a0324d
Reporting entity
- Name
- OPTION CARE HEALTH, INC.norm: option care health
- Domain
- optioncare.com
Victim entity
- Name
- OPTION CARE HEALTH, INC.norm: option care health
- Domain
- optioncare.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.