Health tech company CareCloud is notifying hundreds of thousands of patients after hackers accessed a protected health data store containing medical records.
CareCloud, a major handler of patient medical data, confirmed that attackers breached one of its protected health information repositories. The company has begun notifying affected individuals as required by data breach notification laws.
The breach affects a significant portion of CareCloud's user base, though the company has not disclosed the exact number of compromised records or the scope of information accessed. Healthcare data breaches typically expose sensitive information including names, Social Security numbers, insurance details, and medical histories.
CareCloud has not yet provided details on how the breach occurred, when it was discovered, or what security measures failed. The company did not comment on whether law enforcement has been notified or if ransom demands were made.
The breach adds CareCloud to a growing list of healthcare organizations experiencing major data compromises. Medical data remains highly valuable on the dark web due to its utility for identity theft and fraudulent billing.
Cybercriminals are leveraging artificial intelligence to discover and exploit security weaknesses at unprecedented speeds, creating threats that traditional defenses were never designed to counter.
Levi Strauss & Co. disclosed a cyberattack in which hackers used social engineering tactics to compromise three employees and steal corporate data from their machines.
Computer maker Framework has notified its entire customer base of a data breach that exposed personal information. Hackers accessed names, email addresses, phone numbers, and physical addresses.
The North Carolina Ports Authority confirmed a cyberattack has disrupted IT systems across its major operations. The attack affects Port of Wilmington, Port of Morehead City, and Charlotte Inland Port.