Data Breach at Translation Vendor Affects UnitedHealthcare Plan Members
Data breaches have been announced by United Language Group in Minnesota, Desert Pulmonary & Sleep Consultants in Arizona, and Azle Cube Smiles in Texas.
United Language Group, Minnesota
United Language Group, LLC, a Minneapolis, Minnesota-based provider of translation, localization, and interpretation services, has notified the HHS’ Office for Civil Rights about a breach of the protected health information of 4,649 individuals. Suspicious activity was identified within certain parts of its network on July 9, 2025. The forensic investigation confirmed that parts of its network were accessed by unauthorized individuals between July 8, 2025, and July 9, 2025
According to its notification letters, the breach involved unauthorized access to data provided by clients UnitedHealthcare and UnitedHealthcare Global related to claims, billing, and other member/provider communications. The impacted data included names, contact information, health insurance information, health information ( diagnoses, treatment information, prescriptions, and provider and related information), Social Security numbers, financial account information, driver’s license information, passports, military IDs, residence permit information, and financial account information, including credit or debit card numbers. The types of data involved varied from individual to individual.
Additional monitoring tools have been implemented, and security measures will continue to be assessed and enhanced. The affected individuals have been offered 24 months of credit monitoring and identity theft protection services.
Desert Pulmonary & Sleep Consultants, Arizona
Desert Pulmonary & Sleep Consultants, a Gilbert, Arizona-based medical practice specializing in pulmonary disease and sleep medicine, has notified the HHS Office for Civil Rights about a data privacy incident. A former physician partner left Desert Pulmonary & Sleep Consultants to practice elsewhere. On or around July 13, 2026, Desert Pulmonary & Sleep Consultants identified suspicious activity related to the physician. An investigation was launched, which revealed the former partner copied patient data during his transition period, starting on June 29, 2026. Over the course of three days, he accessed more than 3,000 names and addresses, as well as protected health information of patients – information collected as part of patient visits and information provided by other medical service providers.
The data was accessed with a view to contacting the patients by mail to inform them about his new practice. The data was disclosed to another individual to assist with the mailing of the letters. The physician was contacted by legal counsel of Desert Pulmonary & Sleep Consultants and was informed not to engage in such activity; however, no response was received from the physician or his legal counsel.
Azle Cube Smiles, Texas
Azle Cube Smiles, a dental practice in Azle, Texas, has notified the Texas Attorney General about a data security incident affecting 2,940 Texas residents. On May 26, 2026, the practice was notified by its IT support company about suspicious activity related to remote access session hosts. Its remote desktop web services infrastructure was locked down, including terminating all external connections. An investigation was launched to determine the nature and scope of the activity, and it was quickly determined that a cyberattack had occurred.
An office-wide password reset was performed, and no further unauthorized access has been detected. Azle Cube Smiles said it was rapidly able to restore its patient record platform. The investigation determined that some patient data was potentially accessed or copied, including names, addresses, dates of birth, driver’s license numbers, government-issued IDs, and medical information. Financial information was not involved, nor was information about the dental care provided to patients. Azle Cube Smiles said its IT support company has been conducting regular security inspections and is continuously monitoring its systems to protect against further breaches.



