Hims & Hers Warns of Data Breach After Third-Party Customer Service Platform Incident
None
<h2><b>What happened</b></h2><p class="p3"><span class="s2">Hims & Hers</span> warned customers of a data breach after unauthorized access to support tickets stored on a third-party customer service platform. The company said it became aware of suspicious activity on February 5, 2026, and later determined that certain tickets sent to its customer service team were accessed or acquired without authorization between February 4 and February 7, 2026. On March 3, the company concluded that some of those tickets contained personal information. <span class="s2">Hims & Hers</span> said the exposed information may include names, contact information, and other data related to the support request submitted in each case. The company also said no medical records or doctor communications were compromised. It is now offering 12 months of free credit monitoring to affected individuals.<span class="Apple-converted-space"> </span></p><h2><b>Who is affected</b></h2><p class="p3">The direct exposure affects <span class="s2">Hims & Hers</span> customers whose support tickets were stored in the affected third-party customer service platform during the unauthorized access window. The company has not publicly disclosed how many individuals were impacted, but it said some tickets contained personal information such as names and contact details.<span class="Apple-converted-space"> </span></p><h2><b>Why CISOs should care</b></h2><p class="p3">This incident matters because it involves a third-party support platform that held customer-submitted information outside the company’s core clinical systems. It also shows how customer service workflows can become a breach point even when medical records and doctor communications are not involved, creating exposure around personal data, customer trust, and phishing risk.<span class="Apple-converted-space"> </span></p><h2><b>3 practical actions</b></h2><ol> <li class="p3"><span class="s2"><b>Review support-ticket data exposure:</b></span> Confirm what categories of personal information are routinely included in customer support tickets and whether those platforms hold more sensitive data than intended.<span class="Apple-converted-space"> </span></li> <li class="p3"><span class="s2"><b>Tighten third-party support platform oversight:</b></span> Reassess access controls, monitoring, and incident response expectations for customer service providers that store user-submitted data.<span class="Apple-converted-space"> </span></li> <li class="p3"><span class="s2"><b>Prepare for phishing follow-on risk:</b></span> Alert affected users to watch for unsolicited messages and suspicious activity after a breach involving names, contact details, and support-related information.<span class="Apple-converted-space"> </span></li> </ol><p class="p3">For more news about incidents involving exposure of personal information, click <a href="https://cisowhisperer.com/tag/data-breach/"><span class="s2"><b>Data Breach </b></span></a><span class="s3"><span style="font-family: Verdana, BlinkMacSystemFont, -apple-system, 'Segoe UI', Roboto, Oxygen, Ubuntu, Cantarell, 'Open Sans', 'Helvetica Neue', sans-serif;">to read more.</span></span></p><p>The post <a rel="nofollow" href="https://cisowhisperer.com/hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident/">Hims & Hers Warns of Data Breach After Third-Party Customer Service Platform Incident</a> appeared first on <a rel="nofollow" href="https://cisowhisperer.com/">CISO Whisperer</a>.</p><div class="spu-placeholder" style="display:none"></div><div class="addtoany_share_save_container addtoany_content addtoany_content_bottom"><div class="a2a_kit a2a_kit_size_20 addtoany_list" data-a2a-url="https://securityboulevard.com/2026/04/hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident/" data-a2a-title="Hims & Hers Warns of Data Breach After Third-Party Customer Service Platform Incident"><a class="a2a_button_twitter" href="https://www.addtoany.com/add_to/twitter?linkurl=https%3A%2F%2Fsecurityboulevard.com%2F2026%2F04%2Fhims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident%2F&linkname=Hims%20%26%20Hers%20Warns%20of%20Data%20Breach%20After%20Third-Party%20Customer%20Service%20Platform%20Incident" title="Twitter" rel="nofollow noopener" target="_blank"></a><a class="a2a_button_linkedin" href="https://www.addtoany.com/add_to/linkedin?linkurl=https%3A%2F%2Fsecurityboulevard.com%2F2026%2F04%2Fhims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident%2F&linkname=Hims%20%26%20Hers%20Warns%20of%20Data%20Breach%20After%20Third-Party%20Customer%20Service%20Platform%20Incident" title="LinkedIn" rel="nofollow noopener" target="_blank"></a><a class="a2a_button_facebook" href="https://www.addtoany.com/add_to/facebook?linkurl=https%3A%2F%2Fsecurityboulevard.com%2F2026%2F04%2Fhims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident%2F&linkname=Hims%20%26%20Hers%20Warns%20of%20Data%20Breach%20After%20Third-Party%20Customer%20Service%20Platform%20Incident" title="Facebook" rel="nofollow noopener" target="_blank"></a><a class="a2a_button_reddit" href="https://www.addtoany.com/add_to/reddit?linkurl=https%3A%2F%2Fsecurityboulevard.com%2F2026%2F04%2Fhims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident%2F&linkname=Hims%20%26%20Hers%20Warns%20of%20Data%20Breach%20After%20Third-Party%20Customer%20Service%20Platform%20Incident" title="Reddit" rel="nofollow noopener" target="_blank"></a><a class="a2a_button_email" href="https://www.addtoany.com/add_to/email?linkurl=https%3A%2F%2Fsecurityboulevard.com%2F2026%2F04%2Fhims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident%2F&linkname=Hims%20%26%20Hers%20Warns%20of%20Data%20Breach%20After%20Third-Party%20Customer%20Service%20Platform%20Incident" title="Email" rel="nofollow noopener" target="_blank"></a><a class="a2a_dd addtoany_share_save addtoany_share" href="https://www.addtoany.com/share"></a></div></div><p class="syndicated-attribution">*** This is a Security Bloggers Network syndicated blog from <a href="https://cisowhisperer.com">CISO Whisperer</a> authored by <a href="https://securityboulevard.com/author/0/" title="Read other posts by Evan Rowe">Evan Rowe</a>. Read the original post at: <a href="https://cisowhisperer.com/hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident/?utm_source=rss&utm_medium=rss&utm_campaign=hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident">https://cisowhisperer.com/hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident/?utm_source=rss&utm_medium=rss&utm_campaign=hims-hers-warns-of-data-breach-after-third-party-customer-service-platform-incident</a> </p>