
TMHP 2026 Data Breach (2 Thousand People Affected)
The 2026 TMHP data breach was a security incident announced after Texas Medicaid & Healthcare Partnership determined that unknown individuals may have accessed information in its systems. TMHP is a contractor that performs certain Medicaid functions for the State of Texas.
The U.S. Department of Health and Human Services Office for Civil Rights recorded the event as a hacking/information-technology incident involving a network server and reported 2,045 affected individuals.
Verified Incident TimelineAccording to the official notice, the unauthorized access may have occurred between February 5 and March 26, 2026. TMHP discovered the incident on April 20, 2026; the consumer notification letter is dated June 18, 2026.
What Information May Have Been Affected?The scope may vary by person. The official letter lists Medicaid numbers, first and last names, dates of birth, Social Security numbers, addresses, Medicaid benefit information, Medicaid card information, and health information that may include vaccination and prescription details.
How the Organization RespondedTMHP says it shut off the unauthorized access, blocked connections from suspicious internet addresses, and reviewed accounts and records that may have been affected. Access was restored after users' correct email addresses were confirmed. The organization also began a full review.
What Should Affected People Do?Notice recipients should review Medicaid statements and health records for services they do not recognize. People whose Social Security information was affected may also monitor their credit reports and should report unexpected healthcare services or identity use to the relevant health plan.