United Language Group Data Breach Exposes Social Security Numbers and Health Records

Published: 21 September 2026
Healthcare data breach illustration
Breach Discovery: July 2025Breach Notification: September 2026

United Language Group, a translation vendor for UnitedHealthcare, suffered unauthorized network access in July 2025 that exposed names, Social Security numbers, financial account details, health information, and identity documents for 4,649 individuals. The breach was disclosed to affected individuals in September 2026. Anyone notified should enroll in the offered credit monitoring, freeze their credit, and watch closely for phishing or medical fraud attempts.

CompanyUnited Language Group
IndustryHealthcare
Data Types ExposedNames and Contact Information, Health Insurance Information, Health Information (Diagnoses, Treatment, Prescriptions), Social Security Numbers, Financial Account Information, Driver’s License Information, Passport Numbers, Military Identification Information, Residence Permit Information
People Affected4,649 individuals
Attack MethodUnauthorized Network Access
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the United Language Group Data Breach?

United Language Group provides translation, localization, and interpretation services to healthcare clients, including UnitedHealthcare and UnitedHealthcare Global. The company recently disclosed a data breach that exposed sensitive personal and health information belonging to thousands of people. This United Language Group data breach has raised serious concerns among plan members whose data passed through the vendor’s systems.

According to the company, unauthorized access to its network occurred in July 2025. Suspicious activity was first identified within certain parts of its network, prompting an immediate internal review. The intrusion window was brief, spanning just two days, but the access allowed unauthorized individuals to reach sensitive files tied to claims, billing, and other communications between members and providers.

Once the suspicious activity was flagged, United Language Group launched a forensic investigation to determine what happened. Investigators confirmed that unauthorized parties accessed parts of the network during that short window. As a result, the company worked to determine exactly whose information was involved and what categories of data were exposed.

The investigation took time to complete, and formal notification to affected individuals and regulators followed in September 2026. This gap between discovery and notification is common in breaches involving multiple downstream clients and large volumes of data. However, it still means affected individuals only recently learned their information had been compromised more than a year earlier.

Who was affected?

The breach affects plan members whose health insurance and medical information passed through United Language Group as part of translation or interpretation services. Because the company works as a vendor for UnitedHealthcare and UnitedHealthcare Global, the exposure extends to health plan members rather than direct customers of the translation firm itself.

United Language Group reported that 4,649 individuals were affected. This figure reflects people whose data was stored or processed within the compromised parts of the network. Because the company serves a national health insurer, affected individuals could reside in many different states across the country.

The exact data exposed varied from person to person. Some individuals may have had only basic contact information exposed, while others had far more sensitive details compromised, including financial and identity documents. This variation means each affected person should carefully review their individual notification letter.

What Information Was Potentially Exposed?

The breach potentially exposed a wide range of personal and health-related information. Because United Language Group handled claims, billing, and member communications for a major health insurer, the data involved was unusually sensitive and varied.

  • Full names and contact information
  • Health insurance information
  • Health information, including diagnoses, treatment details, and prescriptions
  • Provider and related medical information
  • Social Security numbers
  • Financial account information, including credit or debit card numbers
  • Driver’s license information
  • Passport numbers
  • Military identification information
  • Residence permit information

This combination of data creates significant risk for affected individuals. For example, Social Security numbers combined with financial account details give criminals nearly everything needed to open new credit accounts. In addition, exposed passports and driver’s license numbers can support fraudulent identity documents or government benefit fraud.

Health information exposure carries its own distinct risks. Diagnoses and treatment details could be used for medical identity theft, where a criminal uses someone else’s identity to obtain treatment or prescriptions. Because this breach also involved military IDs and residence permits, some affected individuals may face heightened concerns around immigration status or military service records being misused.

What is the company doing?

In response to the breach, United Language Group implemented additional monitoring tools across its network. The company has stated that its security measures will continue to be assessed and strengthened going forward. This ongoing review is intended to reduce the chance of a similar intrusion happening again.

United Language Group also notified the HHS Office for Civil Rights about the breach, as required for incidents involving protected health information. In addition, the company sent notification letters directly to affected individuals explaining what data was involved in their specific case. To help reduce potential harm, United Language Group is offering 24 months of credit monitoring and identity theft protection services to those affected.

What Should Affected Individuals Do?

Monitor Your Credit Reports Closely

Affected individuals should review their credit reports regularly for the next several months. Look for new accounts, unfamiliar inquiries, or unexpected changes to existing balances. Because Social Security numbers were exposed, this type of monitoring is especially important.

You can request free credit reports from each of the three major bureaus. Reviewing these reports on a rotating basis throughout the year allows for more consistent monitoring without extra cost. If you spot anything unusual, report it immediately to the bureau and to your financial institution.

Consider a Credit Freeze or Fraud Alert

Because this breach exposed Social Security numbers and financial account details, placing a credit freeze is a strong protective step. A freeze blocks new creditors from accessing your credit file, which makes it much harder for identity thieves to open accounts in your name.

Alternatively, a fraud alert requires lenders to take extra steps to verify your identity before extending credit. This option is faster to set up and still offers meaningful protection. Either step can be done directly through each credit bureau’s website or by phone.

Enroll in the Offered Identity Protection Services

United Language Group is providing 24 months of credit monitoring and identity theft protection to affected individuals. If you received a notification letter, take time to review the enrollment instructions carefully. This service can alert you quickly if your information is misused.

Even though the offered coverage lasts two years, identity theft risks from stolen Social Security numbers can persist much longer. Therefore, it’s wise to continue independent monitoring even after the offered service period ends. Setting a calendar reminder can help you stay consistent.

Watch for Phishing and Medical Fraud Attempts

Because contact information and health details were exposed, affected individuals may become targets of phishing emails or phone scams. Be cautious of messages claiming to be from UnitedHealthcare, United Language Group, or a healthcare provider asking for personal details. Legitimate organizations rarely request sensitive information through unsolicited messages.

In addition, review medical bills and insurance statements for services you don’t recognize. Medical identity theft can be harder to detect than financial fraud, so checking your insurance explanation-of-benefits statements regularly is a smart habit. If anything looks unfamiliar, contact your insurer right away to dispute it.

Consult a Data Breach Attorney

Given the sensitivity of the data involved, affected individuals may want to speak with a data breach attorney. An attorney can help explain your legal options and whether you may be eligible for compensation. Many offer free initial consultations to review your specific situation.

Because deadlines for legal claims can vary by state, it’s important not to wait too long before seeking advice. A prompt consultation ensures you don’t miss any filing windows. This is especially relevant if you experience actual financial or medical harm connected to this breach.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

Check other recent data breach notifications →