Somnia, Inc. Data Breach Exposes Protected Health Information

Published
March 3, 2025
Updated
March 3, 2025
Somnia, Inc. Data Breach Exposes Protected Health Information
Somnia, Inc.
Types of INFORMATION affected
  • Names
    Names
  • Social security numbers
    Social Security Numbers
  • Dates of birth
    Dates of Birth
  • Addresses
    Addresses
  • Government IDs
    Government IDs
  • Medical Information
    Medical Info
  • Financial Info
    Financial Info

Anesthesia management company, Somnia, Inc., disclosed a data breach involving unauthorized access to its email environment. On November 21, 2024, Somnia identified suspicious activity within their email accounts and promptly secured them. By December 10, 2024, it was determined that protected health information might have been present in some of these compromised accounts.

The breach has affected the protected health information of approximately 500 individuals in the United States according to initial HHS disclosure. It is unclear if more people were affected with only PII involved.

Information types exposed:

  • Names
  • Addresses
  • Dates of birth
  • Health information such as diagnosis, treatment, or condition
  • Health insurance information
  • Social Security numbers for a limited number of individuals

The breach was disclosed to the U.S. Department of Health and Human Services on February 14, 2025. Somnia is currently working to determine who needs to be notified and is in the process of sending out notification letters.

Somnia's Response

Following the discovery of the data breach, Somnia took immediate action to secure their email environment. They reset passwords and reinforced multi-factor authentication measures on all email accounts to prevent further unauthorized access. The company has engaged independent cybersecurity specialists to assist with the investigation and ensure that all necessary security protocols are in place.

Somnia is committed to notifying affected individuals and providing them with the necessary resources. Letters will be mailed to those whose information was compromised, containing details about the incident and instructions for enrolling in credit monitoring and identity protection services, if appropriate.

If you believe you may have been affected by this breach, it is crucial to remain vigilant over the next 12 to 24 months. Regularly review your credit reports, bank accounts, and other financial statements for any suspicious activity. Additionally, monitor your Explanation of Benefits (EOB) for any unusual medical activity.

For any questions or concerns, affected individuals can contact Somnia at 833-799-3978 for further assistance.

Notice Letter

This browser does not support inline PDFs. Please download the PDF to view it: Download PDF

Affected Entity
Somnia, Inc.
Consumers Notification date
Date of Breach
Breach Discovered Date
Total People Affected
Information Types Exposed
  • addresses
  • dates of birth
  • health information such as diagnosis/treatment/condition
  • health insurance information
  • Social Security numbers

Join the

Somnia, Inc.

data breach lawsuit. It's free to join. 

Join the Lawsuit
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image
CTA Image