Wakefield & Associates, a Knoxville, Tenn.-based revenue cycle management and medical debt collection company, has begun notifying individuals of a data breach following a cyberattack that occurred earlier this year. The company confirmed that a threat actor gained access to its network on or before January 17, 2025, compromising sensitive consumer and client data.
According to the company’s Notice of Data Privacy Event that it posted to its website and disclosures filed with state regulators, the breach involved both personally identifiable information (PII) and protected health information (PHI). Exposed data includes names, collection account information, Social Security numbers, driver’s license or state ID numbers, financial details, and health information.
The company “discovered suspicious activity” and launched an investigation. It was determined that someone or some entity gained unauthorized access and/or acquired certain files within the company’s network on or before January 17.
An investigation that was completed on September 24, revealed that the cybercriminal group known as Akira claimed responsibility for the attack and allegedly obtained 13 GB of data, according to a published report.
Wakefield’s Response
Wakefield said it immediately secured its systems, notified law enforcement, and launched a third-party investigation once suspicious activity was detected. The company has since implemented additional security measures and is providing affected individuals with twelve months of complimentary credit monitoring and identity theft protection through Cyberscout, a TransUnion company.
The breach was reported to several state attorneys general, including those in Maine and Montana. Preliminary estimates indicate that 26,624 residents in Montana and 41 in Maine were affected.
.




