
On Nov. 20, 2025, Fieldtex Products, Inc., a Rochester, New York-based medical supply fulfillment company, disclosed a significant data breach exposing personally identifiable information (PII) and protected health information (PHI) of 274,363 current and former patients across the U.S.
The company, which administers over-the-counter (OTC) benefit programs for health plans, discovered unauthorized activity within its computer systems on or around Aug. 19, 2025. Upon investigation, Fieldtex determined that an unknown actor may have accessed files containing sensitive information, although there is no evidence to date that any data has been misused.
Data exposed in the breach includes patient names, addresses, dates of birth, insurance member identification numbers, plan names, effective terms and gender. This information was provided to Fieldtex by health plans in order to deliver OTC healthcare-related products to members.
The breach was reported to the U.S. Department of Health and Human Services, and the company posted a Notification of Data Security Incident on its website on Nov. 20, 2025. The company also reported the data breach incident to the Massachusetts Attorney General on Dec. 24, 2025.
Fieldtex responded quickly after discovering the incident, securing its network and engaging a third-party forensic investigation team to determine the scope and nature of the breach. Fieldtex completed a comprehensive review of potentially impacted files by Sept. 30, 2025, and began notifying health plans and affected individuals as soon as possible. For those whose information may have been involved, Fieldtex is offering complimentary credit monitoring services.
If you believe your personal information may have been compromised in this breach:
The company has established a toll-free call center at 833-866-8797, available Monday through Friday from 8 a.m. to 8 p.m. ET, to answer questions and provide support.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)