Hudson MD Group Data Breach Exposes Patient Health Records and Personal Information

Published: 21 September 2026
Healthcare data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: Not Publicly Disclosed

Hudson MD Group, LLC, a New Jersey multispecialty medical group, was hit by a ransomware attack claimed by the metaencryptor group. Patient health, insurance, and personal information may have been accessed. The exact number affected hasn’t been disclosed. Affected individuals should monitor credit reports and watch for official breach notification letters immediately.

CompanyHudson MD Group, LLC
IndustryHealthcare
Data Types ExposedPatient Names and Contact Information, Dates of Birth, Medical Diagnosis and Treatment History, Health Insurance Information, Social Security Numbers, Billing and Financial Account Details, Provider and Appointment Records
People AffectedNot Publicly Disclosed
Attack MethodRansomware
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Hudson MD Group Data Breach?

Hudson MD Group, LLC, a multispecialty medical group based in West Orange, New Jersey, has confirmed it was targeted in a ransomware attack. The group discovered that a threat actor known as metaencryptor had claimed responsibility for breaching its systems. This raises serious concerns for the many patients who rely on the organization’s network of outpatient practices.

Details about exactly how the attackers gained entry have not been publicly disclosed. However, ransomware groups like metaencryptor typically infiltrate networks through phishing emails, stolen credentials, or unpatched software vulnerabilities. Once inside, they often move through connected systems to locate and extract sensitive files before deploying encryption. The breach discovery date has not been publicly disclosed, and Hudson MD Group has not released a detailed public timeline of the incident.

Following discovery of the attack, the organization presumably launched an internal review to determine the scope of the intrusion. As a result, forensic investigators are likely working to identify exactly which systems were accessed and what data may have been copied or stolen. Because Hudson MD Group operates as an integrated network connecting multiple physician practices, investigators must also assess whether the breach spread across shared administrative or clinical systems.

At this stage, the full extent of the compromise remains unclear. In addition, no comprehensive public statement detailing remediation steps has been issued. Patients and staff are therefore left waiting for further updates as the investigation continues.

Who was affected?

The breach could affect patients who received care through any of Hudson MD Group’s affiliated practices across New Jersey. This includes individuals treated in specialties such as cardiology, gastroenterology, neurology, nephrology, urology, and obstetrics and gynecology. Because the organization operates a shared administrative infrastructure, patient records from multiple practices may have been stored on the same systems.

The exact number of individuals affected has not been publicly disclosed. However, given the breadth of medical specialties and outpatient centers involved, the population impacted could be substantial. In addition, current and former employees of Hudson MD Group may also be affected if staff records were stored on compromised systems.

It is also possible that minors were among those affected, particularly if pediatric or family-related obstetric records were involved. Meanwhile, the geographic scope of the breach appears limited to New Jersey, where Hudson MD Group’s care centers operate. Still, patients who have since moved out of state could also be impacted if their historical records remained in the system.

What Information Was Potentially Exposed?

Because Hudson MD Group is a healthcare provider, the data stored in its systems likely includes both clinical and administrative records. While the complete list of compromised data categories has not been publicly disclosed, breaches at similar medical organizations commonly involve the following types of information.

  • Patient names and contact information
  • Dates of birth
  • Medical diagnosis and treatment history
  • Health insurance information
  • Social Security numbers
  • Billing and financial account details
  • Provider and appointment records

If this type of information was indeed accessed, the risks to affected individuals could be significant. For example, stolen Social Security numbers can be used to open fraudulent credit accounts, file false tax returns, or apply for loans in a victim’s name. This kind of identity theft can take months or years to fully resolve.

In addition, exposed medical and insurance information creates the risk of medical identity theft. This occurs when someone uses a victim’s insurance details to obtain treatment, prescriptions, or medical equipment. As a result, victims may find inaccurate information added to their own medical records, which can complicate future care and insurance claims.

What is the company doing?

Hudson MD Group has not released extensive public details about its remediation efforts. However, organizations facing ransomware incidents typically take immediate steps to contain the threat. This often includes isolating affected systems, engaging cybersecurity specialists, and working to restore normal operations securely.

Because the breach notification date has not been publicly disclosed, it remains unclear whether Hudson MD Group has completed formal notification to affected individuals. Nonetheless, healthcare organizations are generally required to notify patients once the scope of a breach involving protected health information is confirmed. Going forward, affected individuals should watch for official notification letters and any offer of credit monitoring or identity protection services from Hudson MD Group.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Affected individuals should regularly check their credit reports for unfamiliar accounts or inquiries. This is one of the simplest and most effective ways to catch identity theft early. You can request free reports from each of the three major credit bureaus.

Because fraud can take time to surface, it helps to check reports periodically rather than just once. If you notice any suspicious activity, report it immediately to the credit bureau and consider filing a report with the Federal Trade Commission. Acting quickly can limit the damage caused by fraudulent accounts.

Consider a Fraud Alert or Credit Freeze

Given that Social Security numbers may have been exposed, placing a fraud alert or credit freeze is a smart precaution. A fraud alert requires lenders to verify your identity before opening new credit in your name. A credit freeze goes further by blocking access to your credit file entirely.

To set up either protection, contact one of the three major credit bureaus, since a fraud alert placed with one bureau typically notifies the others. This process is free and can be lifted temporarily whenever you need to apply for new credit. As a result, this step provides strong protection without permanently limiting your financial options.

Protect Against Medical Identity Theft

Because health records may have been exposed, it’s wise to review recent insurance statements and medical bills closely. Look for any services, prescriptions, or equipment you don’t recognize. This could indicate that someone else is using your identity to receive care.

If you spot anything unusual, contact your insurance provider right away to dispute the charges. In addition, request a copy of your medical records to verify accuracy. Correcting errors early can prevent complications with future treatment or insurance coverage.

Stay Alert for Phishing Attempts

After a healthcare data breach, scammers often send phishing emails or text messages pretending to be from the affected organization. These messages may ask you to click links or share personal information. Because of this, it’s important to remain cautious with any unexpected communication referencing the breach.

Instead of clicking links directly, visit official websites by typing the address yourself or calling verified phone numbers. This simple habit can prevent you from accidentally handing over sensitive information to a scammer. If you’re ever unsure, it’s safer to verify before responding.

Consult a Data Breach Attorney

Given the sensitive nature of healthcare data, affected individuals may want to speak with a data breach attorney. An attorney can help determine whether you qualify for compensation through a class action or individual claim. Many offer free consultations, so there’s little risk in asking questions.

Because deadlines for filing claims can vary by state and case, it’s helpful to seek legal guidance sooner rather than later. This ensures you don’t miss any important filing windows. A qualified attorney can also help you understand your specific rights under New Jersey and federal law.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

View the full list of tracked data breaches →