Nutex Health confirms data theft in cyberattack
Texas-based hospital operator discloses unauthorized access to company servers, with patient and operational data potentially compromised.
Nutex Health, which operates hospitals and emergency care facilities across Texas, Louisiana, and Arkansas, has confirmed that an unauthorized third party exfiltrated data from its servers during a cyberattack. The company disclosed the incident in a regulatory filing and said it is investigating the scope of the breach.
Nutex provides acute care, emergency services, and population health management through a network of facilities. The breach affects a healthcare operator handling sensitive patient records, billing information, and operational data across multiple states. The company has not disclosed when the intrusion occurred or how long attackers maintained access.
The incident adds to a sustained pattern of cyberattacks targeting healthcare infrastructure, where patient care continuity and data sensitivity create acute operational risk. Healthcare providers remain high-value targets due to the volume of personal health information they hold and the operational pressure to restore systems quickly.
- 01Patients at Nutex facilities face potential exposure of medical records and personal data.
- 02Healthcare operators in regional markets should review third-party access controls and segmentation.
- 03Insurers and legal teams may see claims activity if patient harm or identity theft follows.
- 04Regulators may scrutinize Nutex's breach response timeline and notification compliance.