Symphonix Health, a healthcare services provider, reported a cybersecurity incident involving its third-party vendor, Newkirk Products, Inc. On May 21, 2016, unauthorized access occurred to a server containing member information. The breach exposed names, addresses, dates of birth, and plan details, but explicitly excluded SSNs, banking info, or medical records. Newkirk shut down the server, engaged forensic investigators, and notified law enforcement. Affected members were offered two years of identity protection services.