CVS Pharmacy Reports Data Breach to Massachusetts AG in 2026
On March 20, 2026, CVS Pharmacy filed a report with the Massachusetts Attorney General's Office regarding a data security incident. The company states an investigation is ongoing to understand the full scope of what happened. This means that personal information held by CVS Pharmacy may have been impacted.
- State
- Massachusetts
- Reported
- March 20, 2026
CVS Pharmacy has officially reported a data security incident to the Office of the Massachusetts Attorney General. This filing, dated March 20, 2026, confirms that the company experienced an event involving its data systems.
Details provided in the public record indicate that CVS Pharmacy is currently investigating the breach. The specific type of incident and the categories of personal information involved have not been publicly specified by the company at this time.
Individuals who may be affected by this incident should be aware that their personal information could have been accessed without authorization. CVS Pharmacy is expected to issue direct notifications to those whose data is confirmed to have been compromised once their investigation is complete.
To help protect yourself, it is always recommended to monitor your financial accounts and credit reports for any unusual activity. Be cautious of unexpected emails, calls, or messages requesting personal details, as these could be phishing attempts.
Consider enabling multi-factor authentication on online accounts where available, and regularly review account statements. Changing passwords for important online services to strong, unique combinations is also a prudent general security measure.