All NewsEducationTV
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
Story archiveAll categories
← All Stories

CareCloud Notifies Hundreds of Thousands of Medical Records Stolen in Cyberattack

Created at 30 Jul · 8:31 PM1 source↑ Market-relevant
IN SHORT

U.S. health tech company CareCloud is notifying nearly 350,000 individuals that their sensitive medical and personal data was stolen in a cyberattack earlier this year. Hackers had access to patient records for at least six days.

✉Newsletter

PiQ Daily

Pick your topics. Get only what matters, on your cadence.

Key Numbers

350,000people affected by data breach
6days hackers accessed data stores
45,000providers whose patient records are stored

Who's Involved

CareCloud
U.S. health tech giant notifying individuals of data breach
Stephen Snyder
Chief executive of CareCloud
CareCloud Notifies Hundreds of Thousands of Medical Records Stolen in Cyberattack

↳ Why This Matters

The breach exposes sensitive personal, financial, and medical information of hundreds of thousands of individuals, increasing their risk of identity theft, fraud, and potential misuse of health data. It also highlights ongoing cybersecurity vulnerabilities within the healthcare technology sector.

Key facts

  • CareCloud is notifying hundreds of thousands of people about a data breach.
  • The cyberattack occurred earlier this year, with hackers accessing data between March 10 and March 16.
  • Nearly 350,000 individuals are affected by the breach.
  • Stolen data includes names, addresses, Social Security numbers, government IDs, financial information, and medical records.
  • The breach targeted data stored on Amazon Web Services.

U.S. health tech giant CareCloud is beginning to notify hundreds of thousands of individuals whose medical records were stolen in a cyberattack that occurred earlier this year. The company has confirmed that hackers had access to one of its electronic health record data stores for at least six days, between March 10 and March 16.

New disclosures indicate that nearly 350,000 people have been affected by the breach. The stolen data includes personal information such as names, postal addresses, Social Security numbers, and government-issued identification numbers. Financial details like bank account information and payment card numbers were also compromised, along with a significant amount of medical and health-related information.

CareCloud, based in New Jersey, stores patient records for over 45,000 providers across the U.S. The company confirmed that the hackers broke into its data storage hosted on Amazon Web Services. The number of affected individuals is expected to rise as more disclosures are filed with state authorities.

This cyberattack is the latest in a series of breaches targeting healthcare providers this year, including incidents at TriZetto and NYC Health + Hospitals. U.K.-based tech provider Craneware also recently confirmed a significant volume of its customers' data was stolen.

Frequently asked questions

The stolen data includes names, postal addresses, Social Security numbers, government-issued identification numbers, financial information such as bank account details and payment card numbers, and medical and health-related information.

Hackers had access to CareCloud's data stores between March 10 and March 16 of this year.

Nearly 350,000 people are confirmed to be affected, and this number is likely to rise as more disclosures are made.

The data was stored in one of CareCloud's electronic health record data stores hosted on Amazon Web Services.

What Happens Next

01More disclosures are expected to be filed with state authorities, potentially increasing the number of affected individuals.
02CareCloud's chief executive has not responded to requests for comment.

Get the newsletter.

Pick the topics you actually care about. We'll email when there's news worth your time, on the cadence you choose. Cancel any time from your account.

Cadence

How It Developed

CareCloud admitted to a data breach in March.
Hackers gained access to patient data between March 10 and March 16.
The company is now notifying affected individuals.
Nearly 350,000 people are confirmed to be impacted by the breach.
Stolen data includes personal, financial, and medical information.

Sources

T1
CareCloud begins to notify hundreds of thousands after hackers stole medical recordsTechCrunch

Related Stories

Kremlin hackers exploit Exchange flaw for network backdoors
30 Jul · 9:06 PM
Scale AI names ex-Google Cloud exec Francis DeSouza as CEO
30 Jul · 3:08 PM
Okta acquires AI security startup Permiso for ~$200M
30 Jul · 4:26 PM
OpenAI CEO Sam Altman to meet Trump officials on AI safety tests
30 Jul · 4:11 PM
Zoox Receives US Approval for Driverless Robotaxis
30 Jul · 12:34 PM