Skip to content

Somnia

Disclosed Feb 14, 20251 year ago19,069 affectedConfirmed

Official notice

The business associate (BA), Somnia, reported that it experienced a cybersecurity incident that affected the protected health information (PHI) of 19,069 individuals. The PHI involved included clinical, demographic, and financial information. The BA notified HHS, affected individuals and provided substitute notice. In response to the breach, the BA provided complimentary credit monitoring services to the affected individuals, implemented additional administrative, technical, and security safeguards, and retrained workforce members to better protect PHI.

What is known

People affected19,069 (as reported to HHS)
DisclosedFeb 14, 2025
AttackHacking
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Somnia (Business Associate, NY)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalFeb 14, 202519,069

Other breaches at Somnia

BreachAffected
Disclosed Oct 24, 2022Oct 24, 20223 years agoHacking1,892
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Somnia

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.