CEI Vision Partners Data Breach Exposes Sensitive Info

Published
August 14, 2025
Updated
August 15, 2025
CEI Vision Partners Data Breach Exposes Sensitive Info
CEI Vision Partners
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Affected by the

CEI Vision Partners

data breach?

Join the Lawsuit

It's free to join. 

Banner advertisement for ExpressVPN to take control of your online security

Claim Depot may receieve a commission from links on this page

CEI Vision Partners, a healthcare organization that operates a network of eye care practices, experienced a major data breach. On May 26, 2024, CVP detected suspicious on its network. An investigation was launched and it was determined that a cybercriminal accessed certain systems between May 24, 2024 and May 27, 2024.

A review was completed on June 10, 2025 and revealed that the data breach compromised both personally identifiable information (PII) and protected health information (PHI). Exposed information includes names, contact information, dates of birth, Social Security numbers, health insurance information, medical records and financial account information.

The breach is considered severe due to the exposure of both financial and health-related data, which can put affected individuals at risk for identity theft and medical fraud. The total number of affected individuals has not been released, but is believed involve thousands of patients from multiple CEI Vision Partners eye care practices.

The breach was disclosed to the Montana Attorney General's office on Aug. 8, 2025 and the Vermont Attorney General's office on Aug. 13, 2025. CEI Vision Partners is notifying affected individuals by mail.

The cybersecurity incident was also reported to the Massachusetts Attorney Generals office on Aug. 14, 2025. Impacted patients include seven Massachusetts residents and two in Vermont.

CEI Vision Partners's response

In addition to required state and federal disclosures, CEI Vision Partners is offering 12 months of free Experian IdentityWorks Credit 3B identity monitoring services to impacted individuals.

If you receive a notice from CEI Vision Partners or your eye care provider about this breach, you may want to:

  • Sign up for the free identity monitoring services, offered by CVP.
  • Monitor your credit reports and financial accounts for any unusual activity.
  • Be alert for phishing emails or phone calls that may use your exposed information.
  • Consider placing a fraud alert or credit freeze with major credit bureaus.

More information about the eye care organization can be found on the EyeCare Partners website.

Protect Your Data

A breach notice means your personal details could be circulating far beyond the organization involved. One practical step is continuous monitoring: services such as Identity Defender (included with an ExpressVPN subscription) can automatically check dark-web markets, flag new credit-file activity, and request removal of your information from data-broker sites.

This kind of “early-warning system” can’t undo a breach, but it can help you spot misuse quickly and limit further exposure. ExpressVPN is offering 61% off, risk-free for 30 days, with ID Theft Insurance included and no extra cost for those who sign up for one or two years.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

Affected Entity
CEI Vision Partners
Consumers Notification date
Date of Breach
Breach Discovered Date
Total People Affected
Information Types Exposed
  • Financial Account
  • Medical Records
  • Social Security number
  • Contact information
  • Date of birth
  • Financial account information
  • Health plan information
  • Limited clinical information
  • Name
  • Nan
  • Social security numbers
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image