❌

Normal view

There are new articles available, click to refresh the page.
Yesterday β€” 25 September 2026Main stream

Two Maryland hospitals still dealing with system issues after cyberattack

By: Dissent
24 September 2026 at 12:35
On September 22, WYPR reported: Luminis Health says it’s making considerable progress on restoring systems at two Maryland hospitals after they were hit by a cyberattack earlier this month. The company said in an online update that its telephone capabilities at Anne Arundel Medical Center and Doctors Community Medical Center in Lanham have been restored...

Source

Error on North Carolina jury duty website exposed people’s social security numbers, medical records, more

By: Dissent
24 September 2026 at 12:33
Kudos to WBTV for following up on an astute observer’s vulnerability report. David Hodges reports: North Carolina residents summoned for jury duty received notice through a letter in the mail but to request an exemption from jury duty in North Carolina, a person can go online and fill out a jury excuse form. Zach Duda...

Source

Before yesterdayMain stream

National Cancer Centre e-mail lapse allegedly exposes patients’ details

By: Dissent
19 September 2026 at 08:45
The mistaken cc: breach still happens.Β  Ann Neo reports: An invitation to an event sent by the National Cancer Centre Singapore (NCCS) has sparked privacy concerns after a mailing list exposed the identities, contact details and, in some instances, workplaces of individuals with a genetic cancer condition. The e-mail, an invitation to a Living with...

Source

HHS’ Office for Civil Rights Settles HIPAA Investigation of Ambry Genetics for Security Rule Violations

By: Dissent
18 September 2026 at 20:47
WASHINGTON β€” September 17, 2026 β€” The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) today announced a settlement with Ambry Genetics Corporation (Ambry) concerning potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Security Rule. Ambry, headquartered in Aliso Viejo, California, is a covered entity...

Source

Canada: Nipigon hospital hit by ransomware attack

By: Dissent
16 September 2026 at 18:47
Mike Stimpson reports: Some patient services may be affected as the general hospital in Nipigon responds to what it describes as a β€œcyber security incident.” An incident involving ransomware affected information technology systems, Nipigon District Memorial Hospital stated in a post on social media. […] Nipigon Mayor Suzanne Kukko told CFNO’s Al Cresswell β€œthe hospital...

Source

Ransomware group claims attack on Missouri’s Cedar County Memorial Hospital after IT outage

By: Dissent
15 September 2026 at 07:49
DysruptionHub reports: Cedar County Memorial Hospital in El Dorado Springs, Missouri, shut down its IT networks Aug. 14 after a disruption left its electronic health record, patient portal and internet access unavailable. The outage also disrupted diagnostic imaging. Hospital systems could not transmit images to radiologists, so the emergency department partially diverted trauma and critical...

Source

Six in 10 Cyberattacks in Colombia Target Hospitals

By: Dissent
13 September 2026 at 18:33
Joseph Freixes reports: Six in 10 cyberattacks recorded in Colombia target health sector institutions, a figure that highlights the growing exposure of hospitals and clinics to digital threats. The figure, included in a Biofile report based on a measurement analyzed from IBM’s X-Force Index, shows that medical information has become one of the main targets...

Source

ShinyHunters expose 6.4M in attack on medical supplier McKesson

By: Dissent
10 September 2026 at 09:31
Connor Jones reports: McKesson’s cyberattack last month affected roughly 6.4 million individuals, according to Have I Been Pwned (HIBP). The breach notification service added data leaked by serial extortionists ShinyHunters, revealing the scale of the attack for the first time. ShinyHunters initially claimed to have stolen 284 million documents from the medical and pharmaceutical supply...

Source

Personal Data of Approximately 220,000 Domestic and International Gangnam Unni Users Leaked

By: Dissent
7 September 2026 at 08:31
Lee Seunghyeong reports: Personal information of approximately 220,000 domestic and international users has been leaked from Gangnam Unni, a beauty medical platform operated by Healing Paper. On September 7, Healing Paper announced through a public notice that on September 4, there was abnormal access to the integration feature (API) used to view consultation records, resulting...

Source

Google buys Spirit Airlines’ data β€” but what about privacy?

7 September 2026 at 03:45
ISSUE 23.36 β€’ 2026-09-07 PUBLIC DEFENDER By Brian Livingston Spirit Airlines, an ultra-low-cost carrier that served nearly 90 destinations in the US, Latin America, and the Caribbean, went bankrupt and ceased all flight operations on May 2, 2026. Google, the search giant, won a competitive bidding process and will pay $10 million to buy Spirit’s […]

DaVita settles ransomware attack lawsuit for $15M

By: Dissent
4 September 2026 at 08:20
Chad Van Alstin reports an update on a ransomware attack previously reported on DataBreaches.net: Nationwide kidney dialysis chain DaVita has agreed to pay $15 million to settle a class action lawsuit stemming from aΒ 2025 ransomware attackΒ that exposed sensitive patient data to hackers, the bulk of which was later leaked onto the dark web. The hack...

Source

CNIL: Health data breach: €500,000 fine imposed on the Loire Private Hospital

By: Dissent
3 September 2026 at 19:45
On September 3, 2026, the CNIL issued a €500,000 fine against the Loire Private Hospital, for not having taken appropriate measures to ensure the security of the data of its patients and some of their relatives. During the summer of 2025, an attacker managed to connect to theΒ  electronic patient recordΒ (EPR) of the Loire Private...

Source

Luminis Health facilities dealing with a cyberattack

By: Dissent
2 September 2026 at 16:19
Bridget Byrne reports: Luminis Health is experiencing a cybersecurity incident affecting certain systems across its organization, according to a Facebook post Tuesday. β€œOur priority remains providing safe, high-quality care to our patients,” the health system said in the post that went up around 6:45 p.m. β€œWe understand the concern this may cause for our patients,...

Source

IE: HSE fined €645,000 over data breach affecting Westmeath hospital

By: Dissent
1 September 2026 at 08:08
Adrian Cusack reports: The Data Protection Commission has fined the HSE [Health, Safety, and Environment] more than €600,000 over the mismanagement of historical records held at St Loman’s hospital, Mullingar, and St Conal’s Hospital, Letterkenny. The fine was issued at the conclusion of an inquiry into the handling of paper records at the two facilities...

Source

A rough day at the extortion office and a botched attack on Blossom Health.

By: Dissent
31 August 2026 at 11:21
A tip about Click2Mail was not the only interesting tip DataBreaches received on Thursday. We also received an email from someone who identified themself as a patient at Blossom Health, a US-based telehealth and psychiatry platform. β€œAn extortionist appears to have compromised the platform or an individual provider’s account (Justine Belesario) and sent a ransom...

Source

Time’s Up: Ransomware Group Claims 150,000+ Cardiology Patient Records. We’ve Seen the Data.

By: Dissent
31 August 2026 at 10:00
On August 6, DataBreaches reported that Cardiology Associates of Port Huron (CAPH), a Michigan medical practice with 9 locations, appeared to have been breached by a group called Orova. As reported at the time, the listing included screenshots with personally identifiable and protected health information. Orova’s listing, posted on its leak site on August 4,...

Source

VT: Local VA warns of possible data breach

By: Dissent
30 August 2026 at 11:26
Abigail Ham reports: The U.S. Department of Veteran’s Affairs says some veterans getting services through the White River Junction, Vt. healthcare system may have had their personal information exposed in an unintentional data breach. Earlier this summer, several unencrypted communications with personal health information of veterans were sent, a release from the department said Friday....

Source

PEAR leaks data allegedly exfiltrated from South Plains Rural Health Services while SPRHS remains silent

By: Dissent
29 August 2026 at 10:15
SuspectFile reports: A cyberattack against a Texas healthcare organization allegedly resulted in the exfiltration of approximately 1.4 TB of data, according to claims made by the ransomware groupΒ PEAR. The alleged victim isΒ South Plains Rural Health Services, Inc.Β (SPRHS), a nonprofit healthcare organization that has provided services to rural communities across West Texas for decades. The information...

Source

Two different groups have recently attacked Interim HealthCare entities. Should other franchises be concerned?

By: Dissent
29 August 2026 at 09:45
In April, Interim HealthCare of West Texas LLC (Lubbock, Amarillo, and Pampa) and Interim HealthCare of Amarillo notified the U.S. Department of Health and Human Services of a breach. West Texas notified HHS that 2,071 patients were affected, while the Amarillo franchise notified HHS that 666 patients were affected. In closing its investigation into Interim...

Source

Star Health’s public record: A data breach, a β‚Ή3.39-crore fine, 13,000 ombudsman complaints β€” and still no accounting for the policyholder

By: Dissent
29 August 2026 at 07:47
Nitin Naresh revisits the significant Star Health breach of 2024. Previous coverage of the hack-and-leak incident can be found linked in the Related section below this post, which includes coverage of threats made to the insurance firm’s executives, court injunctions that, of course, did not stop a threat actor from leaking data, and lawsuits against...

Source

❌
❌