Aspire Rural Health Breach Affects Two-Month Period

Published
August 21, 2025
Updated
August 21, 2025
Aspire Rural Health Breach Affects Two-Month Period
Aspire Rural Health
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Affected by the

Aspire Rural Health

data breach?

Join the Lawsuit

It's free to join. 

Banner advertisement for ExpressVPN to take control of your online security

Claim Depot may receieve a commission from links on this page

Aspire Rural Health System experienced a major data breach that impacted patients and staff across its network of healthcare facilities in Michigan’s Thumb region. The cybersecurity incident took place over a two-month period, from approximately Nov. 4, 2024, to Jan. 6, 2025. During this time, cybercriminals gained access to Aspire’s network.

The breach was the result of a ransomware attack attributed to the BianLian group, a known cybercriminal organization that claimed responsibility for the incident on Feb. 13, 2025, via a posting on a Tor network site. The attackers reportedly stole both personally identifiable information (PII) and protected health information (PHI).

A review was completed on July 18, 2025 and it was determined that compromised information included first and last names, dates of birth, Social Security numbers, financial account numbers and routing numbers, medical treatment and diagnosis information, prescription information, individual health insurance information, payment card numbers and access PIN numbers, payment card expiration dates, lab results, provider information, driver’s license numbers, password and usernames, biometric identifiers, patient identification numbers, medical record numbers, and passport numbers.

Aspire Rural Health System began notifying affected patients and employees by mail on Aug. 20, 2025. The medical organization also published a Notice of Data Security Incident on its website.

The scope and sensitivity of the exposed data make this breach highly damaging, due to the length of the breach and as it involves not only financial and personal identity information but also detailed medical histories.

Aspire Rural Health System’s response

In addition to notifying patients and staff, Aspire Rural Health System will be required to issue certain state and federal disclosures. Aspire is also offering free credit monitoring to individuals whose Social Security numbers were exposed in the data breach.

If you receive a notice from Aspire Rural Health System about this breach, you may want to:

  • Sign up for the free credit monitoring services, if offered.
  • Monitor your credit reports and financial accounts for any unusual activity.
  • Be alert for phishing emails or phone calls that may use your exposed information.
  • Consider placing a fraud alert or credit freeze with major credit bureaus.

Aspire has also set up a dedicated response line for individuals impacted by the data breach at 833-594-5333, Monday through Friday, 9:00 a.m. to 9:00 p.m. Eastern Time.

More information about Aspire and its services can be found on the Aspire Rural Health System website.

Protect Your Data

A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.

This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

Affected Entity
Aspire Rural Health
Consumers Notification date
Date of Breach
January 6, 2025
Breach Discovered Date
on or about July 18, 2025
Total People Affected
Information Types Exposed
  • Social Security numbers
  • Biometric identifiers
  • Dates of birth
  • Driver’s license numbers
  • Financial account numbers
  • Routing numbers
  • First and last names
  • Individual health insurance information
  • Lab results
  • Medical record numbers
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image