Were you recently affected by a data breach?

Suntree Internal Medicine Data Breach

Suntree Internal Medicine, a Florida healthcare provider, discovered a network security incident on September 28, 2025. An investigation found that certain patients’ names, addresses, medical treatment information, and health insurance information may have been accessed without authorization.

Suntree Internal Medicine
Date of Breach: September 28, 2025 (discovered)
CAU logo

Who was affected:

Clients of Suntree Internal Medicine

Impacted Data:

Names, addresses, medical treatment information, and health insurance information (varies by individual; Social Security numbers, credit card information, and bank account information were not affected)

Suntree Internal Medicine, a healthcare provider based in Melbourne, Florida, has notified patients of a data security incident that exposed personal and medical information. Healthcare providers that store patient records have a responsibility to protect that sensitive information, and when that trust is broken, patients deserve a clear accounting of what happened and what is being done about it.

Suntree Internal Medicine’s Data Breach Investigation

According to a notice posted by Suntree Internal Medicine, the practice identified unusual activity within a portion of its digital environment on September 28, 2025. Upon discovering the activity, Suntree Internal Medicine took steps to secure its network and engaged cybersecurity experts to investigate. That investigation determined that certain files may have been accessed or acquired without authorization, and the practice then reviewed those files to determine what information they contained and which patients may have been affected. Suntree Internal Medicine has stated it has no evidence that any potentially affected information has actually been misused.

Separately, the ransomware group Incransom publicly claimed responsibility for a cyberattack on Suntree Internal Medicine on October 1, 2025, just days after the practice says it first identified unusual network activity, and threatened to leak sensitive medical data if the practice did not respond to its demands. Ransomware groups that target healthcare providers typically gain access to a network, copy sensitive files before encrypting systems, and then use the threat of publicly leaking that data as leverage in extortion negotiations. Healthcare organizations remain one of the most frequently targeted sectors for this type of attack, since medical records combine highly sensitive personal details with information that is difficult or impossible for a patient to change, making it especially valuable to criminals and especially damaging when exposed.

The types of information affected were not the same for every patient; Suntree Internal Medicine has stated that not every individual had all of the potentially exposed data elements involved. The practice has also stated that patients’ Social Security numbers, credit card information, and bank account information were not affected by this incident, which distinguishes it from breaches that expose full financial identity information. Even so, exposure of medical treatment details and health insurance information carries its own risks, including medical identity theft, where a criminal uses a victim’s health insurance information to obtain medical services or prescriptions billed to the victim’s account.

When Did This Breach Occur?

Suntree Internal Medicine states that it identified unusual activity within its network on September 28, 2025. The practice has not published the exact date the underlying unauthorized access began, only the date it was discovered and the subsequent investigation timeline. The Incransom ransomware group publicly claimed responsibility for an attack on Suntree Internal Medicine on October 1, 2025.

What Information Was Breached?

Suntree Internal Medicine’s investigation identified instances of patient names, addresses, medical treatment information, and health insurance information that may have been exposed. The practice has specified that the categories of information affected were different for each individual, meaning not every patient had all of these data elements involved. Suntree Internal Medicine has stated that patients’ Social Security numbers, credit card information, and bank account information were not affected by this incident.

What You Can Do

Suntree Internal Medicine recommends several general precautions for potentially affected patients. Only share your health insurance cards with your own healthcare providers and family members covered under your plan. Carefully review any explanation of benefits statement you receive from your health insurance company, and follow up with your insurer or provider about any services you do not recognize. You can also request a year-to-date report of all services billed under your name from your insurance company and check it against your own records. If you notice unfamiliar medical bills, collection notices, or insurance claims, contact your insurer immediately, and consider reporting suspected medical identity theft to your state’s attorney general.

File a Data Breach Lawsuit Against Suntree Internal Medicine

If you are a Suntree Internal Medicine patient and believe your personal or medical information may have been compromised in this incident, you may have legal options available to you. Healthcare providers have a duty to safeguard the sensitive information entrusted to them, and patients affected by a breach can face real consequences, from the burden of monitoring their accounts to the risk of medical identity theft.

Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach, received notice, or discovered you were impacted, fill out our quick, easy, and secure form to sign up. There is no cost to reach out to our legal partner and no obligation after speaking with someone from our team.

Were you recently affected by a data breach?
Other Data Breaches
Date of Breach: Not publicly disclosed by Sweetwater; vendor incident first communicated July 30, 2026
Date of Breach: Not publicly disclosed
Date of Breach: May 6, 2026
Related News

Frequently Asked Questions

A data breach occurs when sensitive, confidential, or protected information is accessed, stolen, or disclosed without authorization. Data breaches often occur through phishing emails, malware, weak passwords, insider threats, or unsecured databases. Indicators of a data breach can include unexpected password resets, suspicious account activity, unauthorized transactions, or notifications from companies about compromised information.If you suspect your data has been compromised, you must take measures and act quickly. Change passwords, enable two-factor authentication, review your financial accounts for unusual activity and consider freezing your credit.

Once stolen, your personal information may be sold on the dark web or used for identity theft and financial fraud. In some cases, hackers use the data to extort companies or launch further attacks. Victims often face long-term risks, including damage to credit and privacy.

If you receive a data breach notification, don’t ignore it. Immediately change passwords for the affected account and any others that share credentials. Enroll in any free credit monitoring services offered and monitor financial statements closely.

To pursue a data breach claim, you’ll need documentation showing your information was compromised and proof of resulting harm, such as fraudulent charges, credit score damage, or identity theft reports. Notification letters, financial records, and communication with the breached company can help support your claim.

Yes. If a company fails to protect consumer data or delays notifying victims, it may be held liable under state and federal privacy laws. Many victims join class action lawsuits to recover financial losses and hold negligent organizations accountable.

Data breach settlements vary widely depending on the size of the breach, type of data compromised, and damages suffered by victims. Payouts may include cash compensation, identity theft protection, or reimbursement for losses. Many settlements range from a few hundred to several thousand dollars per person. A skilled data breach lawyer can guide victims through the complex legal process, ensuring their rights are protected. If you’ve received a data breach notification or believe your personal data was exposed, you may be eligible for compensation. Contact Class Action U to learn more about how to join a data breach lawsuit and understand the process of filing.