Topic: healthcare cybersecurity
-
Infosecurity Europe: Reactive Security Fails Healthcare, Experts Warn
Cybersecurity experts at Infosecurity Europe 2026 warned that healthcare organizations must urgently adopt AI-powered security tools to prevent catastrophic harm, including patient deaths, as the sector remains the most targeted by cybercriminals with 93% of organizations experiencing attacks in ...
Read More » -
Data breach at Unlimited Technology Systems affects 3.8M
Unlimited Technology Systems disclosed a data breach affecting 3,803,750 individuals, with patient notifications mailed starting July 1, 2026, after hackers accessed files between October 5–10, 2025. The breach exposed highly sensitive data, including Social Security numbers, medical records, dia...
Read More » -
Medtronic notifies customers of ShinyHunters data breach
Medtronic is notifying customers of a cybersecurity breach by the ShinyHunters extortion group, which exposed sensitive data including names, Social Security numbers, and health information between April 13-19, 2026. The hackers threatened to release over 9 million records but the listing was lat...
Read More » -
Multi-Extortion Ransomware: The New Attack Evolution
Ransomware attacks are a pervasive daily reality, severely disrupting operations across critical sectors like healthcare, finance, and manufacturing, as evidenced by a 49% increase in publicly reported attacks in 2025. The threat has escalated due to a shift from simple encryption to aggressive "...
Read More » -
CareCloud notifies hundreds of thousands after medical records stolen in hack
A cyberattack on U.S. health tech company CareCloud earlier this year compromised the medical records of nearly 345,000 individuals, with hackers accessing a data repository for six days in March and stealing names, Social Security numbers, financial details, and medical records. CareCloud, which...
Read More » -
Healthcare Cybersecurity: OT, IoT Vulnerabilities Demand Action
The Stryker cyberattack earlier this year highlights a shift in tactics, where attackers exploit trusted systems and administrative access to cause operational disruption, rather than using novel malware. Modern threats increasingly aim for large-scale operational paralysis, particularly in criti...
Read More » -
OpenLoop Health Data Breach Affects 716,000
OpenLoop Health, a telehealth platform, suffered a data breach in January 2026 that compromised the personal information of approximately 716,000 individuals, including names, addresses, Social Security numbers, and medical data. The company has notified affected users and is offering credit moni...
Read More » -
iRhythm Data Breach: Hackers Stole Patient Info
iRhythm Holdings confirmed a data breach where hackers accessed patient personal and health information from third-party-hosted business applications, reported in an SEC filing on June 16, 2026. The attackers contacted iRhythm on June 9 demanding a ransom to prevent public release of stolen data,...
Read More » -
Cookeville Medical Center Alerts Patients to 2025 Ransomware Attack
Cookeville Regional Medical Center (CRMC) is notifying hundreds of thousands of patients that their sensitive personal and medical data was stolen in a Rhysida ransomware attack discovered in late December 2025. The breach compromised protected health information for over 337,000 individuals, inc...
Read More » -
Health-ISAC warns healthcare of rising ShinyHunters attacks
ShinyHunters is increasingly targeting healthcare organizations by breaching cloud SaaS and storage platforms through supply chain and identity attacks, using stolen OAuth tokens and compromised single-sign-on (SSO) accounts to access entire cloud data ecosystems for extortion. The attack chain b...
Read More » -
DaVita Data Breach Exposes 2.7 Million Patients in Ransomware Attack
DaVita suffered a ransomware attack exposing personal, health, and financial data of approximately 2.7 million patients. The Interlock ransomware gang claimed responsibility and published stolen data after failed negotiations with the company. DaVita is notifying affected individuals, offering cr...
Read More » -
Kettering Health Blames Interlock Ransomware for Cyberattack
Kettering Health, an Ohio healthcare provider, suffered a cyberattack by the Interlock ransomware group in May, compromising sensitive data and disrupting operations, including patient communications. The organization has secured compromised systems, implemented enhanced security measures, and re...
Read More » -
Your Heartbeat Can Identify You, Even in Anonymous Data
ECG signals can be used to re-identify individuals with 85% accuracy, challenging the effectiveness of current anonymization methods in health data. The study highlights that ECG patterns are stable biometric markers, similar to fingerprints, making them vulnerable to linkage attacks across datas...
Read More » -
NHS Supplier Hit by Cyber-Attack, Patient Care Unaffected
A cyber-attack on NHS supplier DXS International was contained, with patient care and clinical services remaining fully operational and minimal disruption expected. The company is investigating with NHS England and notified authorities, highlighting heightened security protocols for sensitive hea...
Read More » -
Fortibleed campaign impact, Cisco Unified CM flaw exploited
Encrypted DNS protocols (TLS, HTTPS, QUIC) effectively hide query content but still leak information through plaintext packet headers, enabling surveillance. New open-source tools like Agent Beacon and Praxen provide telemetry for AI agents and verify their behavior, while EVOHUNT teaches AI agen...
Read More » -
Cyberattack Forces Belgian Hospital AZ Monica to Shut Down Servers
A major Belgian hospital was forced to disconnect all servers due to a severe cyberattack, causing widespread operational disruption and highlighting the vulnerability of critical healthcare services. The attack led to the cancellation of all scheduled procedures, a shift to paper-based systems d...
Read More » -
Ransomware Attacks Rebound in July After Slow Q2
Ransomware attacks surged 19% month-over-month in July 2026 to 799 claimed incidents, the second-highest total of the year, after a quiet April-June period. Finance was the hardest-hit sector with a 71% jump in attacks, followed by technology (62%), healthcare (46%), and education (44%), while US...
Read More » -
University of Hawaii Cancer Center Struck by Ransomware
A ransomware attack on the University of Hawaii Cancer Center in August 2025 compromised decades-old research files, including historical Social Security numbers of study participants, though clinical operations were unaffected. The university paid a ransom to obtain a decryption tool and secure ...
Read More » -
Microsoft Retires Decades-Old Security Threat
Microsoft is removing the deprecated and cryptographically broken RC4 encryption cipher from Windows, ending a major security vulnerability exploited in high-profile attacks like Kerberoasting. The RC4 cipher, integrated into Active Directory in 2000, remained a default fallback for decades despi...
Read More » -
Windows SMB Flaw Exploited, OAuth Apps Hijacked
Digital security faces escalating threats including active exploitation of critical Windows SMB and WSUS vulnerabilities, alongside attackers hijacking trusted OAuth applications to create persistent cloud backdoors. The attack surface is expanding dramatically as interconnected systems link oper...
Read More »