the tech buzz

SUBSCRIBE
AIEnterpriseDealsSecurityCrypto
Newsletter

the tech buzz

Your premier source for technology news, insights, and analysis. Covering the latest in AI, startups, cybersecurity, and innovation.

FOLLOW US

THE DAILY

Get the latest technology updates delivered straight to your inbox.

Company

  • About Us
  • Editorial Team
  • Write For Usnew
  • Contact Us
  • Advertisenew

Legal

  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Disclaimer
  • EULA
  • AI Code of Conduct

Resources

  • Newsletters
  • RSS Feeds
  • Subscribe
  • Pricing & Packages
  • Sitemap
  • Archives
  • TechBuzz Pressnew

PUBLISH WITH US

Reach 1.1M+ subscribers via TechBuzz Press.

TechBuzz Press

HAVE A TIP?

Send us a tip using our anonymous form.

Send a tip

HAVE QUESTIONS?

Reach out to us on any subject.

Ask Now

Browse by Category

AIBlockchainCloudSecurityDataDealsInvestmentsEnterpriseVenturesIoTMobileRoboticsSoftwareStartupsAppleMetaMicrosoftOpenAiGoogleTesla

© 2026 The Tech Buzz. All rights reserved.

the tech buzz

Hims & Hers Confirms Customer Support Breach in February

ArticlesNewsletters
ArticlesNewsletters
Enterprise/SaaS/customer data

Hims & Hers Confirms Customer Support Breach in February

Telehealth giant discloses hackers stole customer support ticket data over several days

by The Tech Buzz

PUBLISHED: Thu, Apr 2, 2026, 9:40 PM UTC | UPDATED: Fri, Sep 4, 2026, 8:45 PM UTC

Add as a preferred source on Google
Hims & Hers Confirms Customer Support Breach in February

Hims & Hers, one of America's largest telehealth platforms, just confirmed hackers infiltrated its customer support systems and stole ticket data over multiple days in February. The company disclosed the breach Thursday evening, nearly two months after the incident occurred. The timing raises questions about how long the company knew about the compromise and what kind of sensitive health information may have been exposed through customer service interactions.

Hims & Hers just added its name to the growing list of healthcare companies grappling with major security incidents. The San Francisco-based telehealth giant confirmed Thursday that hackers breached its customer support infrastructure in February, making off with an undisclosed amount of customer ticket data.

The attack targeted the company's support ticketing system over what Hims & Hers described as "several days" in February. That multi-day window suggests hackers had sustained access to customer service records, potentially including medication inquiries, prescription questions, and other sensitive health-related conversations. The company hasn't specified exactly which support platform was compromised or how many customers may be affected.

What's raising eyebrows in the security community is the timeline. If the breach happened in February, why is the company just disclosing it now in early April? Healthcare companies typically face strict notification requirements under HIPAA, though the rules allow for investigation periods before public disclosure. The delay could indicate Hims & Hers spent weeks determining the scope of the compromise and which customers need to be notified directly.

Customer support systems have become a favorite target for cybercriminals because they're often less hardened than core medical record databases but still contain valuable personal information. Support tickets frequently include names, contact details, medication lists, and descriptions of health conditions - exactly the kind of data that commands premium prices on underground markets. Medical records routinely sell for $50 to $250 each on dark web forums, compared to just $5 for stolen credit card numbers.

Advertisement

Hims & Hers has built its business on convenient, stigma-free telehealth services for everything from hair loss to sexual health. The company went public via SPAC merger in 2021 and has grown aggressively, serving millions of customers across all 50 states. That scale makes it an attractive target - and means even a "limited" breach could affect a substantial number of people.

The telehealth industry has been under siege lately. Amazon's pharmacy services, CVS Health's telehealth platforms, and numerous smaller providers have all disclosed security incidents over the past 18 months. The shift to digital healthcare during the pandemic created an expanded attack surface that security teams are still struggling to defend.

There's no indication yet whether this was a ransomware attack, data exfiltration for resale, or something else entirely. Hims & Hers hasn't said if the attackers made any demands or if law enforcement is involved. The company also hasn't revealed whether any payment information was exposed, though most modern support systems don't directly store credit card data.

Advertisement

For customers, the immediate concern is what information was in those support tickets. Anyone who contacted Hims & Hers customer service in early 2026 should watch for targeted phishing attempts. Attackers armed with personal health details can craft convincing scam messages that appear to come from legitimate medical providers.

The breach also highlights how third-party software creates risk. Most companies don't build their own customer support platforms - they use products from vendors like Zendesk, Salesforce, or Freshdesk. If Hims & Hers was using a third-party tool, the vulnerability could potentially affect other companies using the same system. Neither the company nor security researchers have indicated this is part of a broader supply chain attack, but the possibility can't be ruled out yet.

What happens next depends on what state regulators and federal agencies decide. The Department of Health and Human Services has been cracking down on healthcare data breaches, issuing record fines for companies that fail to properly secure patient information. Hims & Hers will need to demonstrate it had appropriate safeguards in place and responded properly once the breach was detected.

The Hims & Hers breach is another reminder that telehealth's convenience comes with serious security tradeoffs. As these platforms handle increasingly sensitive medical information for millions of Americans, they're becoming irresistible targets for sophisticated attackers. The real test isn't whether breaches happen - it's how quickly companies detect them, how transparently they disclose them, and whether they learn enough to prevent the next one. For now, Hims & Hers customers are left waiting for answers about exactly what was taken and what the company is doing to make sure it doesn't happen again.

More Topics:
customer dataHims & Hers

Advertisement

Advertisement

Trending Now

1

GoPro CEO Vows Cameras Stay Core After Starman Deal

2

Judge Splits Ruling in X vs. Twitter Rival Fight

3

Tim Cook Steps Down, Ternus Takes Apple's Helm

4

Google's Lyria 3.5 Brings AI Music to Gemini

5

Google Translate Gets Listening Mode, Live Background Mode

People Also Ask

Hackers accessed customer support ticket data containing medication inquiries, prescription questions, and descriptions of health conditions during the February 2026 breach. Attackers obtained personal health details from customer service interactions, though payment information wasn't directly exposed. The exact scope of affected customers remains undisclosed.

The Hims & Hers customer support breach lasted several days in February 2026. The company disclosed the incident in early April, nearly two months later. This two-month delay between the breach and public disclosure raises concerns about how quickly the company detected and investigated the compromise.

Hims & Hers customers should watch for phishing attempts and suspicious communications. Attackers with personal health details can craft convincing scam messages impersonating medical providers. Anyone who contacted customer service in early 2026 should monitor accounts closely and be cautious of unsolicited messages requesting medical or personal information.

Telehealth platforms are attractive targets because customer support systems contain valuable health information. Medical records sell for $50-250 each on dark web markets, compared to just $5 for stolen credit card numbers. With millions of customers across all 50 states, Hims & Hers represents a high-value target for cybercriminals.

The Department of Health and Human Services has been issuing record fines for healthcare companies failing to secure patient data. Hims & Hers must demonstrate it had appropriate security safeguards and responded appropriately once the breach was detected. Specific penalties depend on investigation findings and regulatory determinations.

If Hims & Hers used third-party software like Zendesk, Salesforce, or Freshdesk for customer support, other companies using the same platform could be at risk. However, security researchers haven't indicated this is part of a broader supply chain attack. The vulnerability appears isolated to Hims & Hers' specific implementation.

More in Enterprise/SaaS

Adobe Taps Anil Chakravarthy to Replace Narayen as CEO

Adobe Taps Anil Chakravarthy to Replace Narayen as CEO

Zscaler Beats Estimates, Bets Big on Agentic AI

Australia's Data Centre Boom Sparks Resource Fight

Australia's Data Centre Boom Sparks Resource Fight

Google Adds Voice Commands to Gmail, Docs, Keep

Google Adds Voice Commands to Gmail, Docs, Keep

Palo Alto Networks Buys Console for $500M

Palo Alto Networks Buys Console for $500M

Microsoft to Finally Reveal Azure's Real Dollar Revenue

Microsoft to Finally Reveal Azure's Real Dollar Revenue

More Articles

Snowflake Stock Jumps 22% on AI Coding Agent Boost

Snowflake Stock Jumps 22% on AI Coding Agent Boost

Sep 2

150M Driver's License Photos Allegedly Stolen

150M Driver's License Photos Allegedly Stolen

Sep 2

Palo Alto CEO: AI Exposes $1T Security Gap

Palo Alto CEO: AI Exposes $1T Security Gap

Sep 2

Palo Alto CEO: $1T in Cyber Infrastructure Not AI-Ready

Palo Alto CEO: $1T in Cyber Infrastructure Not AI-Ready

Sep 2

Palo Alto Networks Stock Soars on AI Security Boom

Palo Alto Networks Stock Soars on AI Security Boom

Sep 1

Dell Stock Jumps 9% as AI Server Sales Forecast Triples

Dell Stock Jumps 9% as AI Server Sales Forecast Triples

Sep 1