Advanced Homecare Management, LLC DBA Enhabit Home Health & Hospice Data Breach
Advanced Homecare Management Network Server Breach Affects 22,552
What happened in the Advanced Homecare Management, LLC DBA Enhabit Home Health & Hospice data breach?
The Advanced Homecare Management, LLC DBA Enhabit Home Health & Hospice data breach was reported on February 5, 2026 and affected 22,552 individuals. The breach type was Hacking/IT Incident involving Network Server. This breach occurred in Texas. Under HIPAA, affected patients must be notified within 60 days and may be entitled to credit monitoring services.
Advanced Homecare Management, LLC DBA Enhabit Home Health & Hospice Breach Details
Advanced Homecare Management Network Server Breach
Opening Summary
Advanced Homecare Management, LLC, operating under the brand name Enhabit Home Health & Hospice, experienced a significant data breach involving unauthorized access to its network server infrastructure. The breach was reported to the U.S. Department of Health and Human Services on February 5, 2026, affecting 22,552 individuals across Texas. This incident represents a hacking or IT-related compromise of the organization's networked systems, resulting in potential exposure of protected health information (PHI) maintained by the home health and hospice care provider.
Company Response and Investigation Timeline
Upon discovery of the unauthorized access to their network server, Advanced Homecare Management initiated an investigation to determine the scope and nature of the breach. The organization worked to identify which systems were compromised, what data may have been accessed, and the timeline of the unauthorized activity. As required under the Health Insurance Portability and Accountability Act (HIPAA) Breach Notification Rule, the entity began the process of notifying affected individuals without unreasonable delay. The submission date of February 5, 2026, indicates that the organization met its obligation to report the breach to HHS within 60 days of discovery, as mandated by federal regulations. During this period, the organization likely engaged forensic investigators to determine the attack vector and implement remediation measures to prevent future incidents.
Technical Details of the Breach
The breach occurred at the network server level, which typically indicates that attackers gained unauthorized access to centralized systems where patient records and health information are stored and processed. Network server compromises often result from vulnerabilities such as unpatched software, weak authentication credentials, phishing attacks targeting employees, or exploitation of remote access points. Once inside the network infrastructure, threat actors may have been able to access multiple databases and file systems containing patient information. The fact that a business associate was involved in this incident suggests that the compromised systems may have included data processed or stored on behalf of Advanced Homecare Management by a third-party vendor or service provider. This adds complexity to the breach response, as multiple organizations must coordinate notification efforts and remediation activities.
Organizational Context
Advanced Homecare Management, LLC operates Enhabit Home Health & Hospice, a healthcare provider specializing in in-home medical care and end-of-life services. Home health and hospice organizations maintain extensive patient records including medical histories, treatment plans, medication information, and personal health data. These organizations typically serve patients across multiple locations within their service area, managing care coordination through centralized IT systems. The Texas-based organization's network infrastructure supports clinical documentation, billing operations, scheduling, and care management functions. Given the nature of home health services, the organization likely maintains detailed patient information necessary for coordinating care across multiple caregivers and facilities.
Patient Impact and Notification
The breach affected 22,552 individuals who received services from or were associated with Advanced Homecare Management. These patients and their families received notification of the breach, informing them of the potential exposure of their health information. The notification process, required under HIPAA regulations, must include details about the breach, the types of information potentially exposed, steps the organization is taking to address the incident, and recommended actions patients should take to protect themselves. Affected individuals were advised to monitor their accounts and credit reports for signs of identity theft or fraud, and to consider placing fraud alerts or credit freezes with credit reporting agencies. The organization likely provided information about credit monitoring services or other protective measures available to affected individuals.
Industry Context and HIPAA Implications
Network server breaches represent a significant category of healthcare data breaches, accounting for a substantial portion of incidents reported to HHS. These breaches typically involve sophisticated threat actors who target healthcare organizations for the value of patient data on the dark web. HIPAA requires covered entities and business associates to implement administrative, physical, and technical safeguards to protect electronic protected health information (ePHI). The involvement of a business associate in this breach underscores the importance of Business Associate Agreements (BAAs) and vendor management practices. Healthcare organizations must ensure that third-party vendors maintain equivalent security standards and promptly report any security incidents. The scale of this breach—affecting over 22,000 individuals—reflects the reality that modern healthcare IT infrastructure, while essential for patient care, presents significant security challenges. Similar network server breaches have affected other healthcare providers, demonstrating the ongoing threat landscape facing the industry.
What Data Was Exposed
Risks to Patients
What to Do If You Were Affected by the Advanced Homecare Management, LLC DBA Enhabit Home Health & Hospice Breach
Monitor credit reports from all three major credit bureaus (Equifax, Experian, TransUnion) for unauthorized accounts or inquiries; consider placing a fraud alert or credit freeze to prevent unauthorized credit applications
Review medical records and explanation of benefits statements from your insurance provider for unauthorized services or claims; contact your healthcare providers if you notice suspicious activity
Change passwords for any online accounts associated with Advanced Homecare Management or related healthcare providers, using strong, unique passwords for each account
Enroll in any complimentary credit monitoring or identity theft protection services offered by the organization; maintain vigilance for phishing emails or calls claiming to be from healthcare providers requesting personal information
Monitor Your Medical Records
Request copies to check for unauthorized changes
Check More Texas Breaches
Search all breaches reported in Texas
Were You Affected?
Patients affected by large healthcare data breaches may be eligible for compensation through class action lawsuits.
Learn about data breach lawsuits