TrueCore Behavioral Solutions, a Tampa, Florida provider of behavioral health services for at-risk youth, suffered a ransomware attack linked to the Storm threat actor group. The breach may have exposed patient health records, personal details, and possibly Social Security numbers. Affected individuals, including families of minor patients, should monitor credit reports and consider a credit freeze immediately.
| Company | TrueCore Behavioral Solutions |
|---|---|
| Industry | Healthcare |
| Data Types Exposed | Full Names, Dates of Birth, Contact Information, Behavioral Health Treatment Records, Diagnostic and Clinical Information, Social Security Numbers, Insurance Information, Employee Personnel Records |
| People Affected | Not Publicly Disclosed |
| Attack Method | Ransomware |
| Regulators Notified | Not Publicly Disclosed |
Were you affected by this breach?
You may be owed compensation.
Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.
Check if you qualify — free reviewWhat Happened in the TrueCore Behavioral Solutions Data Breach?
TrueCore Behavioral Solutions, a Tampa, Florida-based provider of residential and outpatient behavioral health services for at-risk youth, has confirmed it was the target of a ransomware attack. The threat actor group known as Storm has been linked to the intrusion. As a result, sensitive information tied to the organization’s operations and the young people it serves may have been accessed.
Details about the exact timeline of the attack have not been publicly disclosed. However, ransomware incidents like this one typically involve attackers gaining unauthorized access to internal networks before encrypting files or stealing data. In this case, the Storm group has been identified as the actor responsible for the breach. This suggests a coordinated effort to infiltrate the company’s systems rather than an opportunistic or accidental exposure.
Following discovery of the incident, TrueCore Behavioral Solutions is presumed to have launched an internal investigation to determine the scope of the intrusion. Because the company works with a vulnerable population of adjudicated youth aged 13 to 21, any compromise of its systems carries heightened sensitivity. Forensic review of exactly which files or databases were accessed has not been publicly disclosed at this time.
Who was affected?
The population affected by this breach likely includes current and former patients of TrueCore Behavioral Solutions, along with their families. Because the organization specifically serves at-risk adjudicated youth between the ages of 13 and 21, this means minors may be among those impacted. This raises additional concerns given the vulnerability of that age group.
In addition to patients, employees of the organization may also be affected. TrueCore has between 51 and 200 employees, meaning staff records could also have been exposed alongside patient data. The exact number of individuals affected by this breach has not been publicly disclosed. As a result, the full scope of the incident remains unclear at this time.
What Information Was Potentially Exposed?
While the complete list of compromised data categories has not been publicly disclosed, ransomware attacks against behavioral healthcare providers commonly result in exposure of sensitive personal and clinical information. Given the nature of TrueCore’s services, the following types of data are typically at risk in incidents like this one.
- Full names
- Dates of birth
- Contact information such as addresses and phone numbers
- Behavioral health treatment records
- Diagnostic and clinical information
- Social Security numbers
- Insurance information
- Employee personnel records
If confirmed, exposure of this type of data could lead to serious consequences for affected individuals. Behavioral health records are especially sensitive because they reveal private details about a person’s mental health history. For young patients, this kind of exposure could lead to stigma, discrimination, or emotional harm if the information becomes public or falls into the wrong hands.
Beyond emotional and reputational risks, there is also a financial danger. If Social Security numbers or insurance details were compromised, affected individuals could face identity theft or medical fraud. Because many of the patients served by TrueCore are minors, their identities could be exploited for years before the fraud is even discovered. This makes early vigilance especially important for parents and guardians.
What is the company doing?
In response to the attack, TrueCore Behavioral Solutions is expected to have taken steps to contain the intrusion and secure its network. Organizations facing ransomware attacks typically work with cybersecurity specialists to assess the damage, remove malicious access points, and restore normal operations. However, specific remediation details from TrueCore have not been publicly disclosed.
Going forward, affected individuals should watch for official notification letters from TrueCore Behavioral Solutions. These letters, when sent, generally explain what data was compromised and what protective services, if any, are being offered. Because notification and discovery dates have not been publicly disclosed, individuals concerned about their information should proactively monitor their accounts and records in the meantime.
What Should Affected Individuals Do?
Monitor Your Credit Reports
Anyone who received services from TrueCore Behavioral Solutions, or whose child did, should begin monitoring their credit reports closely. This is one of the simplest and most effective ways to catch fraudulent activity early. You can request free credit reports from all three major credit bureaus.
Because behavioral health data breaches often accompany exposure of Social Security numbers, unusual account openings or credit inquiries could be an early warning sign. Therefore, checking your reports every few months, rather than just once, gives you a better chance of spotting suspicious activity before it grows into a larger problem.
Consider a Fraud Alert or Credit Freeze
If Social Security numbers were exposed in this breach, placing a fraud alert or credit freeze on your accounts is a strong protective step. A fraud alert requires creditors to verify your identity before opening new accounts in your name. A credit freeze goes further by blocking most access to your credit file entirely.
For parents whose children may be affected, it is also possible to freeze a minor’s credit file in many states. This is particularly important because fraud involving a child’s identity can go unnoticed for years. As a result, taking this step now could prevent significant financial harm down the road.
Protect Sensitive Health Information
Because this breach involves a behavioral health provider, exposed treatment records deserve special attention. Individuals should review any insurance statements or medical bills for services they did not receive. This could indicate that someone else has used their information fraudulently.
In addition, affected individuals may want to request a copy of their medical records to check for inaccuracies. If unfamiliar treatments or diagnoses appear, this could be a sign of medical identity theft. Reporting any discrepancies to your healthcare provider and insurer as soon as possible can help limit further damage.
Stay Alert to Phishing Attempts
Following a data breach, scammers often use stolen information to craft convincing phishing emails, texts, or phone calls. These messages may pose as TrueCore Behavioral Solutions, a bank, or even a government agency. Because the attackers may have real personal details, these scams can seem highly credible.
To protect yourself, avoid clicking links or sharing personal information in response to unsolicited messages. Instead, contact the organization directly using a verified phone number or website. This simple habit can prevent scammers from gaining further access to your accounts or identity.
Consult a Data Breach Attorney
Given the sensitivity of behavioral health data involved in this incident, affected individuals may want to speak with a data breach attorney. An attorney can help determine whether you qualify for compensation through a class action or individual claim. Many offer free consultations to evaluate your situation.
Because deadlines for filing claims can vary depending on the case and jurisdiction, it is wise to act sooner rather than later. Consulting with a legal professional can also help clarify your rights if TrueCore Behavioral Solutions later confirms the scope of data exposed in this breach.
Get a Free Case Review
Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.
