Three companies just confirmed data breaches in one week. Here’s what to watch for.

One Medical, Kodak and Novo Nordisk all confirmed breaches within days of each other, putting millions of records at risk. A health care network, a household name and a major drugmaker, all hit by the same wave of attacks. Here’s what each breach exposed and what to do if you’re affected.

ChatGPT/Kim Komando

I need your help: Add Komando.com as a preferred source on Google

Three companies. One week. Millions of records stolen between them.

One Medical, the health care network owned by Amazon, faces a hacker group’s claim of stealing a massive trove of patient data. Your most sensitive records, the medical kind, could be exposed. Watch for fake “billing” texts referencing your actual care.

Kodak confirmed a breach after the same group claimed more than 2.2 million customer and corporate records. If you’ve bought from Kodak or worked there, expect phishing emails using your real name and order history. Change that password.

Novo Nordisk, maker of Ozempic and Wegovy, confirmed hackers spent two months inside its systems before stealing clinical trial data and the AI models behind its drugs. If anyone calls about your prescription out of nowhere, hang up and call your pharmacy directly.

A stolen card gets canceled in minutes. Your medical history doesn’t get a do-over.

🚨 Why this keeps happening

Hackers know health care and pharmaceutical data is worth more than almost anything else on the black market because you can’t change your diagnosis the way you change a password. Windows or Mac, the entry point is rarely your device. It’s a phishing email, a fake text or a gap on the company’s end you can’t control. What you control is how fast you react.

🔒 What to do now

Watch for an official notification letter or email directly from One Medical, Kodak or Novo Nordisk, not a text or call. No notice yet doesn’t mean you’re clear. These investigations are still unfolding.

  1. Watch for targeted phishing. Messages using your real name, order history or prescription details feel legitimate. They’re not.
  2. Never call back a number from an unexpected text. Use the number on the company’s official website instead.
  3. Freeze your credit if you haven’t already. Equifax, Experian, TransUnion and Innovis. Free. Ten minutes. Read my step-by-step guide here.

🛡️ Catch what’s coming next

Free antivirus reacts to threats everyone knows about. It won’t catch a brand-new phishing campaign built around a breach that happened three days ago.

Webroot runs silently in the background and watches behavior, not just known threats. That’s the difference between catching something new and missing it completely.

Here’s what it adds:

  • Always-on protection: Webroot Essentials works 24/7 to stop viruses, phishing scams, and ransomware in real time, without slowing down your computer.
  • Web Threat Shield: It blocks risky websites and clearly shows where it’s safe to click, helping you avoid scams before they start.
  • Breach Monitor: Check if your information has been exposed in a data breach, so you can take action quickly.
  • Text Scam Detection: Unsure if a text is legitimate or a scam? Our newest product update can check a link within SMS and let you know if it’s fraudulent. *We will have an expansion of this feature, called “Scam Detection”, coming early October.

Get 62% off Webroot Essentials right now at Webroot.com/kim. Setup takes minutes.

You can’t stop the next breach. You can make sure it doesn’t cost you anything.

📩 Send this to someone who assumes a breach like this could never touch them.