In section Startups & Technology

CareCloud breach exposes sensitive data of 345,000 patients

Nearly 350,000 patients across the United States are receiving notification letters after a significant cyberattack compromised their medical and financial records. New filings with state attorneys general reveal that hackers infiltrated CareCloud’s Amazon Web Services storage for six days, exfiltrating highly sensitive personal information from the health tech provider’s databases.

CareCloud breach exposes sensitive data of 345,000 patients

The breach, which occurred between March 10 and March 16, exposes a wide array of data including Social Security numbers, passport details, driver’s licenses, and bank account information. The New Jersey-based company supports over 45,000 medical providers, making the scale of the incident particularly severe. While CareCloud initially acknowledged a security incident in late March, recent disclosures provide the first comprehensive look at the scope of the theft.

Filings across states like Massachusetts, New Hampshire, and Texas confirm the stolen records contain deep medical histories alongside payment data. CareCloud chief executive Stephen Snyder has remained silent regarding the incident and the company’s specific security failures. This attack follows a troubling trend of large-scale compromises within the healthcare sector, mirroring recent breaches at TriZetto and NYC Health + Hospitals, where millions of patient records were similarly exposed to unauthorized actors.

Share:on TelegramXFacebook

Subscribe to our newsletter

Once a week — the best stories from our editors, no ads or push notifications. Delivered Sunday morning.

Comments (0)

Leave a comment

No comments yet. Be the first!