Precipio Data Breach Exposes 150 GB of PHI and PII

Published
February 3, 2026
Updated
April 28, 2026
Precipio Data Breach Exposes 150 GB of PHI and PII
Precipio
Affected by the data breach? You may be entitled to compensation. Submit a claim today.

Precipio, Inc., a healthcare diagnostics company specializing in cancer testing, recently experienced a data breach involving sensitive patient information.

On Nov. 25, 2026, Precipio discovered that an unauthorized user had accessed an employee’s cloud-based storage account. Following an investigation with third-party cybersecurity experts, it was determined that the unauthorized access occurred on or around Nov. 23, 2025. During this incident, certain files were copied without authorization

The ransomware group INC RANSOM claimed responsibility, stating they had obtained 150 GB of Precipio’s data. The group posted about the attack on Dec. 2, 2025, via their network on Tor, indicating that the breach was part of a targeted ransomware campaign.

The compromised files contained a range of personally identifiable information (PII) and protected health information (PHI), including names, addresses, Social Security numbers, medical record numbers, dates of birth, clinical or treatment details, medical procedure information, medical provider names, prescription information and health insurance information. The specific data exposed varies by individual.

While the exact number of affected individuals has not been disclosed, the breach has so far affected 4,952 residents of Texas and 227 of Massachusetts.

A notice of the incident was posted to Precipio website. The breach was also disclosed to the New Hampshire Attorney General and to the U.S Department of Health and Human Services.

Precipio's response

Precipio is conducting a review of the compromised files to determine exactly what information was involved and to identify all affected individuals. They have committed to providing further notifications as more details become available.

The company encourages affected individuals to remain vigilant against identity theft and fraud by monitoring account statements and reviewing free credit reports for suspicious activity. Federal law entitles all consumers to one free credit report annually from each of the three major bureaus: Equifax, Experian and TransUnion.

Additional steps such as placing a fraud alert or a credit freeze on credit files are also recommended, especially in light of the sensitive nature of the information exposed.

For those who may be impacted, Precipio has set up a dedicated assistance line at 917-664-7071, available Monday through Friday from 9 a.m. to 5 p.m. Eastern time, excluding holidays.

SUBMIT YOUR CLAIM TO THE LAW FIRM HANDLING THIS INVESTIGATION

Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info
  • Affected information types not yet disclosed

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

Affected Entity
Precipio
Consumers Notification date
Date of Breach
November 23, 2025
Breach Discovered Date
November 25, 2026
Total People Affected
Information Types Exposed
  • Drivers Licenses
  • Medical Records
  • Social Security Number Information
  • Driver’s License number
  • Government-issued ID number (e.g. passport)
  • Address
  • Health insurance information
  • Clinical or treatment information
  • Credit or debit
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image