
VNS Health, formally known as VNS Behavioral Health Inc., disclosed a data breach affecting 739 people in the United States.
The company discovered the breach on June 26, 2025, and reported it to the U.S. Department of Health and Human Services on Feb. 18, 2026. VNS Health also posted a notice about the incident on its website.
The breach began with a phishing attack, a type of email scam in which someone is tricked into giving access to a secure account through a deceptive message. The attack gave an unauthorized third party access to one VNS Health employee's email account between June 12, 2025, and June 26, 2025.
After suspicious activity was identified in the employee's email account, an investigation was launched to determine the scope of the incident.
A review of the affected email account was then conducted to determine what data may have been accessible and which individuals were affected.
The exposed information varied by person but may have included names, Social Security numbers, driver's license numbers, Medicare or Medicaid numbers, and certain health-related information. According to the company's notification, the health-related information specifically included indications relating to substance use disorder or psychiatric evaluations or assessments.
The company encouraged affected individuals to remain vigilant by reviewing account statements, health insurance statements and credit reports for unusual or unauthorized activity. VNS Health also urged people to report any suspected identity theft or fraud to the appropriate financial institution, health plan or law enforcement agency.
VNS Health did set up a dedicated toll-free phone line for people who believe they may have been affected or who have questions about the incident. The number is 877-421-8797, available Monday through Friday from 9:00 a.m. to 9:00 p.m. Eastern Time.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)