Tag: healthcare
-
Gunra ransomware: what you need to know
The ransomware gang Gunra has been creating havoc – exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. First seen on fortra.com Jump to article: www.fortra.com/blog/gunra-ransomware-what-you-need-know
-
Hospital for Sick Children discloses employee data breach due to third-party software flaw
First seen on scworld.com Jump to article: www.scworld.com/brief/hospital-for-sick-children-discloses-employee-data-breach-due-to-third-party-software-flaw
-
ISO 42001 AI Certification Audits by Lazarus Alliance Experts
Tags: ai, compliance, control, defense, finance, framework, governance, healthcare, lazarus, nist, risk, serviceIn 2026, forward-thinking organizations recognize that ISO 42001 certification transcends checkbox compliance, emerging as the strategic convergence point where AI governance meets rigorous multi-framework risk management. Lazarus Alliance experts observe that AI systems now underpin critical operations across defense, healthcare, and financial services, demanding controls that simultaneously satisfy ISO 42001, NIST 800-53, CMMC, and FedRAMP”¦…
-
Cyber Talk-11 Palo Alto Networks: A Security Company That Never Stops Rebuilding Itself
On August 19, 2026, Palo Alto Networks announced an industry initiative called the Frontier AI Critical Defense Program, bringing together partners including Anthropic, OpenAI, IBM, Microsoft, Siemens, Red Hat, Idaho National Laboratory, and organizations across technology, energy, healthcare, and industrial control. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/cyber-talk-11-palo-alto-networks-a-security-company-that-never-stops-rebuilding-itself/
-
ShinyHunters Leaks 7.1 Million Baxter International Records
Gang Claims It Stole Medical Device Maker’s Salesforce Info Including Personal Data. Extortion gang ShinyHunters has struck the healthcare sector again. The notorious cybercriminal gang claims on its darkweb site of leaking 7.1 million Salesforce records stolen from medical device maker Baxter International, including personally identifiable information. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/shinyhunters-leaks-71-million-baxter-international-records-a-32630
-
Fitch explains how water, healthcare organizations can keep strong credit ratings despite cyberattacks
Resilience, not prevention, is key, analysts at the credit-rating agency said in a pair of new reports. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/water-healthcare-cyberattacks-credit-ratings-fitch/828384/
-
Canada’s Hospital for Sick Children attacked by cybercriminals again as employee data stolen
The Hospital for Sick Children, which was hit in a ransomware incident in 2022 that disabled some of its systems, released a statement on Thursday warning of a data theft incident they believe is tied to a third-party software application. First seen on therecord.media Jump to article: therecord.media/canada-hospital-for-sick-children-attacked-again-employee-data
-
Medical records, SSNs, and bank details exposed in CareCloud data breach
Healthcare technology provider CareCloud confirmed that 3.75 million people were affected by a March data breach. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/medical-records-ssns-and-bank-details-exposed-in-carecloud-data-breach/
-
Wazuh and AI For Enhanced SOC Workflows
Artificial Intelligence (AI) has become one of this decade’s defining technologies. From healthcare and finance to manufacturing and education, organizations increasingly rely on AI to automate repetitive tasks, uncover patterns hidden within large datasets, and support faster decision-making. Cybersecurity has experienced a similar transformation. While attackers employ AI to automate First seen on thehackernews.com Jump…
-
SickKids data breach exposes employee and job applicant info
Toronto’s Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264) First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/sickkids-data-breach-exposes-employee-and-job-applicant-info/
-
Why Healthcare AI Vendor Risk Demands Stronger Oversight
Tom Walsh of tw-Security on Prioritizing High-Risk Vendors and AI Governance. Healthcare organizations face growing third-party risk as AI becomes embedded in vendor products and clinical workflows. Tom Walsh of tw-Security explains why entities need stronger AI governance, better vendor oversight and greater transparency to protect patient data. First seen on govinfosecurity.com Jump to article:…
-
Fitch explains how water, healthcare organizations can keep strong credit ratings, despite cyberattacks
Resilience, not prevention, is key, analysts at the credit-rating agency said in a pair of new reports. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/water-healthcare-cyberattacks-credit-ratings-fitch/828384/
-
Healthtech firm CareCloud data breach impacts 3.7 million patients
U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/healthtech-firm-carecloud-data-breach-impacts-37-million-patients/
-
Electronic health record company CareCloud says 3.7 million people affected by breach
Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments. First seen on therecord.media Jump to article: therecord.media/electronic-health-record-company-carecloud-data-breach
-
CareCloud confirms 3.7M patients had their medical records stolen in data breach
The cyberattack at CareCloud resulted in one of the largest reported data breaches in the U.S. healthcare industry this year. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/19/carecloud-confirms-3-7m-patients-had-their-medical-records-stolen-in-data-breach/
-
Hack on Med Software Firm Hits Half of Poland’s Population
19M Patients Affected by Data Theft Including National ID Numbers. A hack into IT systems of MyDr, a Polish provider of electronic medical documentation software, has affected more than 12,000 healthcare facilities and nearly 19 million individuals in Poland, about half the country’s population. Government officials have launched an investigation. First seen on govinfosecurity.com Jump…
-
LiteLLM Supply-Chain Attack Technology, Banking and Healthcare the Most Affected
Tags: attack, backdoor, banking, credentials, cybersecurity, data-breach, finance, healthcare, supply-chain, technologyThe SANDCLOCK LiteLLM supply-chain attack exposed credentials across 2,038 repositories, affecting technology, finance, healthcare, retail and more. Resecurity (USA) estimated the most affected sectors by the “SANDCLOCK” backdoor, which was planted as a result of the code repository compromise. According to cybersecurity experts, LiteLLM / TeamPCP Supply-Chain Attack will have long-lasting consequences. By compromising a…
-
Major genetic-testing firm says hack compromised sensitive patient data
The June breach, which also exposed employees’ information, underscored the supply-chain risks facing the healthcare sector. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/baylor-genetics-cyberattack-compromise-patient-data-genetic-testing/828019/
-
Poland probes MyDr healthcare software breach potentially affecting 19 million people
MyDr, a privately-owned Polish company that supplies software to doctors, clinics and other healthcare providers, said on Friday that it had identified and removed the cause of the incident and introduced additional security measures. First seen on therecord.media Jump to article: therecord.media/poland-probes-mydr-healthcare-software-breach
-
Court Sets Strict Security for Change Health’s Stolen Data
Plaintiffs, Experts Face Strict Rules for Handling Data Stolen in 2024 Attack. A federal court last week approved stringent security requirements on how plaintiffs’ attorneys and experts must safeguard a copy of stolen data that Change Healthcare will turn over in class action litigation involving the company’s massive 2024 cyberattack that affected 193 million individuals.…
-
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
Tags: attack, breach, cybersecurity, exploit, finance, flaw, fortinet, government, healthcare, infrastructure, intelligence, korea, network, ransomware, serviceCybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organizations across the world.Targets of these attacks include healthcare and public health, financial services, government services and facilities, and professional and nonprofit services.”Gunra is another variant in the ongoing trend of First seen on thehackernews.com…
-
Court Sets Tight Security for Change Health’s Stolen Data
Plaintiffs, Experts Face Strict Rules for Handling Data Stolen in 2024 Attack. A federal court last week approved stringent security requirements on how plaintiffs’ attorneys and experts must safeguard a copy of stolen data that Change Healthcare will turn over in class action litigation involving the company’s massive 2024 cyberattack that affected 193 million individuals.…
-
Unlimited Technology Systems Data Breach Exposes Data of 3.8 Million Healthcare Patients
Hackers stole personal, medical, and insurance data of 3.8 million people from Unlimited Technology Systems’ data center. Unlimited Technology Systems disclosed a data breach affecting more than 3.8 million people after hackers accessed one of its commercial data centers between October 5 and 10, 2025. Unlimited Technology Systems is a U.S.-based healthcare technology company headquartered…
-
Experts say healthcare faces cybersecurity crisis: ‘These are patient safety issues’
Regulatory failures, funding constraints and industry consolidation have created serious hacking risks. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/healthcare-cybersecurity-crisis-def-con/827378/
-
Security researchers scanned the Polish web and found courts, hospitals, and airports at risk of hacks
Researchers found common points of failure, like software used to organize and display web content, could have allowed hackers to run riot through government websites. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/07/security-researchers-scanned-the-polish-web-and-found-courts-hospitals-and-airports-at-risk-of-hacks/
-
Unlimited Technology Systems breach impacts 3.8 million people
Healthcare software company Unlimited Technology Systems reported that more than 3.8 million people were impacted by a data breach incident that occurred in October 2025. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/unlimited-technology-systems-breach-impacts-38-million-people/
-
Top 10 Breaches of the Week
Security Boulevard’s weekly after-action roundup looks at the breaches and security incidents that mattered most over the past two weeks. This edition spans large healthcare exposures, attacks on government and financial infrastructure, a fast-moving software supply-chain compromise, and incidents where the final scope is still being established. #1: Unlimited Technology Systems: 3.8 million healthcare records..…
-
Ransomware Surges in July After Q2 Lull
Finance, technology and healthcare sectors were particularly heavily targeted in July, according to Comparitech First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/ransomware-surges-july-q2-lull/
-
Updoc Data Breach Exposes Patient Contact Information Following Third-Party Security Incident
The Updoc data breach has raised fresh concerns about cybersecurity in Australia’s healthcare sector after the telehealth provider confirmed that an unauthorized third party may have accessed customer contact information through an external system. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/updoc-data-breach/

