San Bernardino County/ARMC Patients' Data Exposed in 2026 Breach
San Bernardino County, on behalf of Arrowhead Regional Medical Center (ARMC), reported a data breach in 2026 that exposed sensitive patient information, including medical records and Social Security Numbers. If you received a notification letter, your personal data was compromised, and you may be eligible to pursue compensation.
Received a San Bernardino County on behalf of Arrowhead Regional Medical Center notification letter? Find out in minutes if you qualify for compensation.
Free case review- State
- California
- Breach date
- August 28, 2026
- Reported
- September 28, 2026
What may have been exposed
- Full Name
- Date of Birth
- Social Security Number
- Medical Record Number
- Health Insurance ID Number
- Diagnosis and Treatment Information
- Prescription Information
- Provider and Treatment Dates
San Bernardino County recently announced a data security incident affecting Arrowhead Regional Medical Center (ARMC) that occurred on August 28, 2026, and was reported on September 28, 2026. This breach means that highly sensitive personal information entrusted to a major public healthcare provider in California was exposed.
The exposed data includes critical categories such as Full Name, Date of Birth, Social Security Number, Medical Record Number, Health Insurance ID Number, Diagnosis and Treatment Information, Prescription Information, and Provider and Treatment Dates. This combination of identifying and health-related data carries significant risks for affected individuals.
When your medical and identity details are compromised, you face increased risks like medical identity theft, where someone might use your information to obtain healthcare services, potentially corrupting your medical history. The exposure of your Social Security Number, alongside other personal identifiers, also creates a long-term vulnerability to financial fraud and other identity theft schemes that can be difficult to resolve.
Receiving an official data breach notification letter from San Bernardino County or ARMC confirms that your private records were compromised. Legal precedent in data breach cases suggests that victims do not need to prove immediate financial harm to have a valid claim; the increased risk of future identity theft and the burden of monitoring your personal information are recognized as injuries.
If you received a notification, it indicates a potential failure by the institution to adequately protect your sensitive data. You have the right to understand what happened and explore your legal options. Our firm is currently investigating this breach, and we offer a free case review to help you determine if your claim may be worth compensation, with no fee unless we successfully recover for you.
Received a San Bernardino County on behalf of Arrowhead Regional Medical Center notification letter? Our legal team tracks every San Bernardino County on behalf of Arrowhead Regional Medical Center data breach filing and offers a free case review. See the full San Bernardino County on behalf of Arrowhead Regional Medical Center case file on DataBreachClassActions
What to do if you were affected
Based on the categories of information reported in this filing, these steps can help limit the risk of identity theft and fraud.
Freeze your credit
Place a free credit freeze with Equifax, Experian, and TransUnion. A freeze blocks new accounts from being opened in your name and can be lifted anytime.
Check for medical identity theft
Review the Explanation of Benefits statements from your health insurer for services or claims you never received, which can signal misuse of your medical identity.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Related data breach cases
- ZZ Diag Probe
- Challenge Financial Services, Inc.
- Upbound Group, Inc.
- Kings United Way
- MedImpact Healthcare Systems, Inc.
- Financial Administrative Support Services
- 5Star Life Insurance Company
- Peña and Bromberg
- NSE Insurance Agencies
- HILT-Trust 2020-A and its underlying trusts and affiliates ("HILT")
- Fairwinds Credit Union
- Modoc Medical Center
- Ethan Conrad Properties
- Friesen Group