Nutex Health Investigates Cyberattack After Unauthorized Party Accesses Company Servers
Healthcare provider Nutex Health is investigating a cybersecurity incident after an unauthorized third party accessed and potentially compromised information stored on the company’s servers.
Nutex disclosed the incident in a filing with the U.S. Securities and Exchange Commission (SEC), stating that the accessed data may include private or confidential information. The company has not yet confirmed what specific data was compromised or whether personal information was exposed.
“Based on preliminary findings from our ongoing investigation, we believe that certain information maintained on our servers, including information that may be private and/or confidential, has been accessed and compromised by an unauthorized third party,” Nutex said in its SEC filing.
Nutex Health is a for-profit healthcare company that operates 28 facilities across 12 states, including Bayou City ER and Hospital in Texas and Green Bay ER and Hospital in Wisconsin. The company lists its healthcare facilities on its website.
Nutex reported annual revenue of $875 million in 2025 and has a market capitalization of approximately $1.28 billion. The company trades under the ticker symbol NUTX on the Nasdaq Capital Market.
Nutex responds to cybersecurity incident
After detecting the intrusion, Nutex hired external incident response and forensic specialists, activated its cybersecurity response plan, and implemented measures to contain the incident. The company also notified law enforcement.
Nutex said it is still determining what types of information may have been accessed and whether patients, employees, healthcare providers, business partners, or other individuals were affected.
“We continue to evaluate whether and the extent to which patients, employees, authorized providers, confidential business and financial information, intellectual property, or other information may have been accessed, obtained, or otherwise disclosed,” the SEC filing states.
The company is also assessing the potential impact of fraud and any disclosure of personal or confidential information by third parties.
According to Nutex, the incident had not caused a material impact on its operations or financial reporting systems as of August 24. The company said it does not currently believe the cyberattack will materially affect its business strategy, operations, financial condition, or results of operations.
No known ransomware group or other threat actor had publicly claimed responsibility for the attack at the time of publication.
BleepingComputer has contacted Nutex for additional information about the cybersecurity incident and will update this article if the company responds.
The overall prevention score can hide what happens after the initial access. If an attacker uses valid credentials, your defenses can drop sharply.
Blue Report 2026 measures defense techniques by technology across 338 million simulations run in customer production environments.
Source: www.bleepingcomputer.com




