<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CMS Notifying Medicare Beneficiaries of Potential Data Breach in Medicare &amp; Insurance</title>
    <link>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617674#M11745</link>
    <description>&lt;P&gt;&lt;a href="https://community.aarp.org/t5/user/viewprofilepage/user-id/300286"&gt;@GailL1&lt;/a&gt;&amp;nbsp;, NO pressure to reply but are you saying NOT everyone is going to be contacted? Thanks for posting this as this is the 1st I am hearing about this. Happy 4th!!!&lt;/P&gt;</description>
    <pubDate>Fri, 04 Jul 2025 21:09:02 GMT</pubDate>
    <dc:creator>SummerOnTheWay1</dc:creator>
    <dc:date>2025-07-04T21:09:02Z</dc:date>
    <item>
      <title>CMS Notifying Medicare Beneficiaries of Potential Data Breach</title>
      <link>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617633#M11743</link>
      <description>&lt;P&gt;Just FYI in case you get one of these notifications or a new Medicare card.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cms.gov/newsroom/press-releases/cms-notifies-individuals-potentially-impacted-data-incident" target="_blank" rel="noopener"&gt;CMS.gov 06/30/2025 - News Release - CMS Notifies Individuals Potentially Impacted by Data Incident&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;from the link ~&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;What Happened?&lt;/STRONG&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;On May 2, 2025, CMS’ call center began receiving inquiries from beneficiaries who received letters confirming the creation of Medicare.gov accounts they did not initiate. CMS promptly launched an investigation and discovered that malicious actors had fraudulently created new accounts between 2023 and 2025 using valid beneficiary information, including Medicare Beneficiary Identifiers (MBI), coverage start date, last name, date of birth, and zip code.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Once these unauthorized accounts were established, bad actors may have accessed additional beneficiary data, including:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Provider information&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Mailing address&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Dates of service&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Diagnosis codes&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Services received&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Plan premium details&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;CMS is not aware of any reports of identity fraud or misuse of the information as a direct result of this activity. Nevertheless, out of an abundance of caution, CMS is taking proactive steps to safeguard beneficiary information.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;=============&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The news release goes on to say what CMS is doing to correct this -&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;also from the link~&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;What Can Beneficiaries Do?&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Beneficiaries are encouraged to:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN&gt;Review Medicare Summary Notices and Explanation of Benefits for any unfamiliar charges or services.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Report any suspicious activity to &lt;A href="tel:1-800-MEDICARE" target="_blank" rel="noopener"&gt;1-800-MEDICARE&lt;/A&gt; (&lt;A href="tel:1-800-633-4227" target="_blank" rel="noopener"&gt;1-800-633-4227&lt;/A&gt;) or the Office of Inspector General at oig.hhs.gov/fraud/report-fraud/.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Obtain free annual credit reports through &lt;A href="http://www.annualcreditreport.com" target="_blank" rel="noopener"&gt;www.annualcreditreport.com&lt;/A&gt; or by calling &lt;A href="tel:1-877-322-8228" target="_blank" rel="noopener"&gt;1-877-322-8228&lt;/A&gt;.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;File reports with local law enforcement and/or the Federal Trade Commission by calling &lt;A href="tel:1-877-IDTHEFT" target="_blank" rel="noopener"&gt;1-877-IDTHEFT&lt;/A&gt; (&lt;A href="tel:1-877-438-4338" target="_blank" rel="noopener"&gt;1-877-438-4338&lt;/A&gt;) or online at &lt;A href="http://www.ftc.gov/idtheft" target="_blank" rel="noopener"&gt;www.ftc.gov/idtheft&lt;/A&gt; if any identity theft concerns arise.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;For additional information or questions, beneficiaries can directly contact &lt;A href="tel:1-800-MEDICARE" target="_blank" rel="noopener"&gt;1-800-MEDICARE&lt;/A&gt; (&lt;A href="tel:1-800-633-4227" target="_blank" rel="noopener"&gt;1-800-633-4227&lt;/A&gt;).&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jul 2025 16:05:01 GMT</pubDate>
      <guid>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617633#M11743</guid>
      <dc:creator>GailL1</dc:creator>
      <dc:date>2025-07-04T16:05:01Z</dc:date>
    </item>
    <item>
      <title>Re: CMS Notifying Medicare Beneficiaries of Potential Data Breach</title>
      <link>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617674#M11745</link>
      <description>&lt;P&gt;&lt;a href="https://community.aarp.org/t5/user/viewprofilepage/user-id/300286"&gt;@GailL1&lt;/a&gt;&amp;nbsp;, NO pressure to reply but are you saying NOT everyone is going to be contacted? Thanks for posting this as this is the 1st I am hearing about this. Happy 4th!!!&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jul 2025 21:09:02 GMT</pubDate>
      <guid>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617674#M11745</guid>
      <dc:creator>SummerOnTheWay1</dc:creator>
      <dc:date>2025-07-04T21:09:02Z</dc:date>
    </item>
    <item>
      <title>Re: CMS Notifying Medicare Beneficiaries of Potential Data Breach</title>
      <link>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617678#M11746</link>
      <description>&lt;P&gt;&lt;a href="https://community.aarp.org/t5/user/viewprofilepage/user-id/32699552"&gt;@SummerOnTheWay1&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Right, it will be only for those who have had a fraudulent account established by someone else. &amp;nbsp;I am not looking at the News Release right now but I think they said a bit over 100,000 beneficiaries. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You would know cause you would get a notice from Medicare that an account had been created and you knew you did not create it. &amp;nbsp;Just like a bank or credit card co would do if this type of thing happened. &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jul 2025 21:17:56 GMT</pubDate>
      <guid>https://community.aarp.org/t5/Medicare-Insurance/CMS-Notifying-Medicare-Beneficiaries-of-Potential-Data-Breach/m-p/2617678#M11746</guid>
      <dc:creator>GailL1</dc:creator>
      <dc:date>2025-07-04T21:17:56Z</dc:date>
    </item>
  </channel>
</rss>

