RXNT Healthcare Software Breach Exposes Patient Data in March 2026 Incident
RXNT, a healthcare software provider formerly known as Networking Technology Inc., disclosed a data breach affecting patient records stored in its electronic health records platform. The company notified impacted healthcare organizations via letters dated May 1, 2026, and launched a dedicated website for affected providers to register for updates.
The breach occurred between March 1 and March 3, 2026, when an unauthorized actor accessed an RXNT solution used by some of its healthcare clients. During this three-day window, the intruder exfiltrated data, which was later reviewed between March 3 and April 17, 2026, to identify the scope of exposure. Compromised information included patient names, dates of birth, addresses, contact details, and patient IDs.
Since RXNT’s platform stores records on behalf of healthcare organizations, each affected client was informed of the number of impacted patients. However, the total number of affected individuals remains undisclosed.
In response, RXNT assumed responsibility for breach reporting, including filings with the U.S. Department of Health and Human Services Office for Civil Rights, media notifications, patient alerts, and reports to state attorneys general. Affected providers were given until May 15, 2026, to register for further details. As RXNT is a software vendor rather than a direct healthcare provider, patient notifications will be issued either by the healthcare organizations themselves or by RXNT on their behalf.
Source: https://www.claimdepot.com/data-breach/rxnt-2026
RXNT cybersecurity rating report: https://www.rankiteo.com/company/rxnt
"id": "RXN1778099340",
"linkid": "rxnt",
"type": "Breach",
"date": "3/2026",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Healthcare organizations using '
"RXNT's platform",
'industry': 'Healthcare',
'name': 'RXNT',
'type': 'Healthcare Software Provider'}],
'customer_advisories': 'Patient notifications to be issued by healthcare '
'organizations or RXNT on their behalf',
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Names, dates of '
'birth, addresses, '
'contact details, '
'patient IDs',
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Patient records'},
'date_detected': '2026-03-03',
'date_publicly_disclosed': '2026-05-01',
'description': 'RXNT, a healthcare software provider formerly known as '
'Networking Technology Inc., disclosed a data breach affecting '
'patient records stored in its electronic health records '
'platform. The breach occurred between March 1 and March 3, '
'2026, when an unauthorized actor accessed an RXNT solution '
'used by some of its healthcare clients and exfiltrated data. '
'Compromised information included patient names, dates of '
'birth, addresses, contact details, and patient IDs.',
'impact': {'data_compromised': 'Patient names, dates of birth, addresses, '
'contact details, and patient IDs',
'identity_theft_risk': 'High',
'systems_affected': 'RXNT electronic health records platform'},
'investigation_status': 'Ongoing',
'references': [{'date_accessed': '2026-05-01',
'source': 'RXNT Breach Notification'}],
'regulatory_compliance': {'regulations_violated': 'HIPAA (assumed)',
'regulatory_notifications': 'U.S. Department of '
'Health and Human '
'Services Office for '
'Civil Rights, state '
'attorneys general'},
'response': {'communication_strategy': 'Dedicated website for affected '
'providers, notifications to '
'healthcare organizations, media '
'notifications, patient alerts, and '
'reports to state attorneys general'},
'stakeholder_advisories': 'Affected providers were given until May 15, 2026, '
'to register for further details',
'threat_actor': 'Unauthorized actor',
'title': 'RXNT Healthcare Software Breach Exposes Patient Data',
'type': 'Data Breach'}