INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

Hims Exposes Sensitive PHI

| 2026-04-10 20:02 HIGH LOW DATA BREACH
Executive Summary
AI-generated
On April 10, 2026, the telehealth company Hims & Hers Health suffered a data breach via its third-party customer support platform. The ShinyHunters group claimed responsibility for the attack but this has not been verified by Dark Reading. As a result of the ultra-sensitive nature of some Hims products, customers are at risk of embarrassing fallout and potentially exposed to names and unspecified medical information belonging to "a limited set" of affected customers, with email addresses also impacted. The breach occurred between February 4th and 7th, when hackers maintained access to customer support tickets containing sensitive personal health information (PHI), which was not secured promptly by the company despite being aware of suspicious activity as early as February 5th.
Technical Mitigations AI-generated
• Patch the React2Shell vulnerability to prevent automated credential harvesting campaigns. • Monitor for suspicious activity targeting customer service platforms, such as ShinyHunters group activities. • Implement a robust security posture around third-party support platforms used by Hims & Hers Health.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Campaign Exploits React2ShellCampaign Exploits React2Shell
Target & Sectors
LATAM LATAM healthhealth
Intelligence Sources
Dark Reading 2026-04-10