AngMar Management Services (Texas home-health/hospice back office): 126,196 patients' SSNs and medical data stolen — Interlock ransomware claimed 700 GB
AngMar Management Services of Mansfield, Texas, which provides business operations, administration and network support for home health and hospice providers, spotted suspicious activity in mid-July 2026 and confirmed in early September that attackers stole patient data. Exposed information includes names, birth dates, Social Security numbers, diagnoses, medical history, health insurance details, patient IDs, provider names, prescriptions and dates of service. The company reported 126,196 affected individuals to the US Department of Health and Human Services on 16 September, and HHS listed it on its breach portal in the week before 5 October. The Interlock ransomware group added AngMar to its leak site in August, claiming more than 700 GB of data. Wire: SecurityWeek 5 Oct.
- Product
- AngMar Management Services — healthcare administration systems (Interlock ransomware claim)
- Versions
- n/a — incident, no CVE
- Exploited in Australia?
- unknown
- Patch to
- Affected patients: freeze credit and watch for medical identity fraud. Managed service and back-office providers to health care: segment client environments, keep offline backups, and monitor for large outbound transfers, which is how Interlock-style data theft usually shows up before encryption.
Primary: SecurityWeek — 250,000 impacted by data breaches at New Jersey, Texas healthcare firms (5 Oct 2026) · Vendor: HHS Office for Civil Rights — breach portal
