Baylor Genetics disclosed that unauthorized actors accessed portions of its network between June 11 and June 17, 2026, affecting approximately 2,810,878 patients and employees. The U.S. clinical diagnostic laboratory detected suspicious activity around June 15 and completed its review of the incident’s data impact around July 30.
Exposed information may include personal identifiers, medical testing information, laboratory results, health-insurance data and, in limited cases, Social Security numbers. Employee records may also have contained government identification and financial-account information. Baylor Genetics said laboratory and genetic-testing operations continued without interruption, no test results were altered, and it has found no confirmed fraud or misuse; no threat actor has publicly claimed responsibility.

See attribution, scope, and your downstream exposure.
7 events from the most recent confirmed update back to the earliest known activity.
Baylor Genetics completed its review of the potentially affected data and individuals on or about July 30. The review found that exposed records could include patient medical and insurance data and, for some patients and employees, Social Security numbers and other sensitive identifiers.
Baylor Genetics detected suspicious activity in a limited part of its IT environment around June 15 and began investigating the intrusion with external cybersecurity specialists.
An unauthorized third party accessed portions of Baylor Genetics' network between June 11 and June 17, potentially exposing patient and current or former employee information.
Following the incident, Baylor Genetics secured affected systems, strengthened identity and access controls, enhanced monitoring, and coordinated its response with law enforcement and regulators.
Baylor Genetics reported 2,810,878 affected individuals to the U.S. Department of Health and Human Services following the cyberattack.
An initial filing with a Texas state regulator reported that at least 248,430 Texas residents were affected by the Baylor Genetics data-security incident.
Baylor Genetics sent written notifications to affected individuals when it had available address information and established an assistance line for those impacted.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
4 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcecysecurity.news
Open sourcescworld.com
Open sourcetechradar.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.