CareCloud, a provider of healthcare IT services, has officially disclosed a security breach involving unauthorized access by a third party, resulting in the exposure of patient medical records. The company has initiated the process of notifying tens of thousands of affected patients regarding the incident.
This report serves as a formal disclosure of a security incident. The compromised data includes sensitive patient personal information and medical records. CareCloud states that its primary focus is on swiftly assessing the situation and implementing measures to prevent further damage.
Managing medical data requires an exceptionally high standard of security. This major data breach underscores the critical cyber security risks currently facing the healthcare technology industry. Details regarding the exact point of entry and the methods employed by the attackers remain under active investigation.
CareCloud is working closely with relevant authorities to determine the full scope of the breach. In addition to ongoing outreach to affected patients, the company has pledged to implement a comprehensive and fundamental strengthening of its system security infrastructure to prevent a recurrence of such an incident.