The Asthma Center Data Breach Investigation

Allergic Disease Associates, P.C. dba The Asthma Center reported a cybersecurity incident involving unauthorized access to a limited number of computer systems and the possible download of files. According to its notice, names, health insurance details, and medical information may have been involved. Strauss Borrelli PLLC is investigating the incident and the legal rights of affected individuals. If you received a notice, you can fill out the secure contact form on this page to ask whether you may qualify to pursue a claim.

Key Facts at a Glance

  • Entity Involved: Allergic Disease Associates, P.C. dba The Asthma Center (Healthcare)
  • Incident Type: Unauthorized system access and possible file download
  • Date of Incident: October 28, 2025 to November 17, 2025
  • Discovery Date: November 1, 2025, as identified in the incident record
  • Official Notice Date: Not specified in the available notice
  • Exposed Information: Names, dates of birth, health insurance member numbers, provider names, and medical information
  • Affected Population: Not disclosed in the available notice

What Happened?

According to The Asthma Center’s official consumer notice, the healthcare provider learned of suspicious activity involving its computer systems in November 2025. The incident record identifies November 1, 2025 as the discovery date, while the notice itself provides only the month. The company reported that it took steps to secure its network and began an investigation into the nature and scope of the activity.

The investigation reportedly determined that an unauthorized actor accessed a limited number of systems between October 28 and November 17 and may have downloaded certain files. The Asthma Center then reviewed the potentially involved files to identify their contents and the individuals to whom the information related. The matter was publicly listed on an unspecified state attorney general portal on August 21, 2026, according to the supplied incident record. The company stated that it was not aware of identity theft or fraud related to the event when it issued its notice.

What Information Was Exposed?

The Asthma Center reported that the information potentially involved varies by individual. Its review identified names together with one or more of the following data elements:

  • Dates of birth
  • Health insurance member numbers
  • Healthcare provider names
  • Limited clinical information
  • Diagnosis information
  • Prescription information
  • Treatment information

This combination of personal and healthcare data may create risks beyond ordinary financial fraud. Criminals could use the information in fraudulent patient-billing schemes, medical identity theft, insurance-verification scams, prescription-related inquiries, or targeted messages that impersonate a healthcare provider. The notice does not state that every listed data category was involved for every person.

What Should You Do Next?

  1. Review the notice carefully: Confirm which information may have been involved in your case. Keep the notice, envelope, and related communications because they may help document when you learned of the event.
  2. Examine healthcare records: Review explanation-of-benefits forms, patient portal activity, pharmacy records, and medical bills for unfamiliar providers, treatments, prescriptions, or insurance claims. Report suspected errors promptly to the provider and insurer.
  3. Be alert for healthcare scams: Treat unexpected calls, emails, or texts requesting insurance verification, prescription details, portal credentials, or payment with caution. Contact the provider or insurer through a trusted telephone number rather than responding directly.
  4. Monitor your credit reports: Obtain reports through AnnualCreditReport.com and check for unfamiliar accounts or incorrect identifying information. A fraud alert or credit freeze may provide additional protection if you believe identity information is at risk.
  5. Document suspicious activity: Save screenshots, bills, claim denials, correspondence, and records of time or money spent responding. If misuse occurs, consider reporting it to IdentityTheft.gov, your insurer, law enforcement, and the appropriate state attorney general.

Your Legal Rights

Individuals whose personal or medical information may have been involved could have rights under applicable state privacy, consumer-protection, data-breach-notification, or confidentiality laws. Available rights and potential remedies depend on facts such as where the individual lives, what information was affected, whether adequate notice and safeguards were provided, and whether the person experienced identity theft, fraudulent medical billing, lost time, expenses, or other harm.

Receiving a notice does not automatically establish a legal claim, and the absence of known fraud does not necessarily resolve every privacy concern. Affected individuals should preserve the notice and records of any protective measures or losses. Speaking with a data privacy attorney may help an individual understand applicable deadlines and options, but general information about this incident is not individualized legal advice.

Why Hire Strauss Borrelli PLLC?

Strauss Borrelli PLLC represents consumers in privacy and cybersecurity matters and investigates whether organizations provided legally required protections and notifications. The firm can review an affected person’s circumstances, explain potential options in plain language, and evaluate whether the facts may support participation in a data privacy claim. Contacting an attorney does not guarantee a recovery, but it can help preserve evidence and identify deadlines that may apply.

If you received a breach notification letter from The Asthma Center:

We would like to speak with you about your rights and potential legal remedies in response to this data breach. Please fill out the form, below, or contact us at 872.263.1100 or sam@straussborrelli.com.

Data Breach Website Blog Form

Contact Us

Learn about your legal rights

Name
Terms & Conditions and Privacy Policy

What can you do if you were impacted by a data breach?

If you were impacted by a data breach, you may consider taking the following steps to protect your personal information.

  1. Carefully review the breach notice and retain a copy;
  2. Enroll in any free credit monitoring services provided by the company;
  3. Change passwords and security questions for online accounts;
  4. Regularly review account statements for signs of fraud or unauthorized activity;
  5. Monitor credit reports for signs of identity theft; and
  6. Contact a credit bureau(s) to request a temporary fraud alert.

Contact Us Now

Data Breach Website Blog Form

What can you do if you were impacted by a data breach?

If you were impacted by a data breach, you may consider taking the following steps to protect your personal information.

  1. Carefully review the breach notice and retain a copy;
  2. Enroll in any free credit monitoring services provided by the company;
  3. Change passwords and security questions for online accounts;
  4. Regularly review account statements for signs of fraud or unauthorized activity;
  5. Monitor credit reports for signs of identity theft; and
  6. Contact a credit bureau(s) to request a temporary fraud alert.

One Magnificent Mile
980 N Michigan Avenue, Suite 1610
Chicago, Illinois 60611

Phone: 872.263.1100
Toll Free: 866.748.6220

One Magnificent Mile
980 N Michigan Avenue, Suite 1610
Chicago, Illinois 60611

Phone: 872.263.1100
Toll Free: 866.748.6220

©2026 STRAUSS BORRELLI PLLC. ALL RIGHTS RESERVED. ATTORNEY ADVERTISING.
PRIVACY POLICY  |  TERMS & CONDITIONS  |  COOKIE POLICY

©2026 STRAUSS BORRELLI PLLC. ALL RIGHTS RESERVED. ATTORNEY ADVERTISING.

PRIVACY POLICY  |  TERMS & CONDITIONS  |  COOKIE POLICY