#healthcare
12 articles
LockBit, Interlock, and Rhysida were the most frequently named threat actors across the 12 articles tagged healthcare, published between 2026-04-12 and 2026-08-21. Coverage centered on the healthcare sector, with additional reporting on critical infrastructure, Government, and pharmaceutical organizations. Affected regions included Global, United States, Canada, Illinois, and Moldova. The severity mix was heavily weighted toward high-impact incidents, with 11 high-severity cases and 1 medium-severity case recorded. These reports collectively document a sustained pattern of attacks against medical and allied institutions during the period.
HIGHSickKids Breached Again as Employee Data Stolen in Third-Party App
Canada's Hospital for Sick Children confirms a new cyberattack tied to a third-party app exposed current and former employee data, following its 2022 ransomware incident.
HIGHWest Pharma Hit by Ransomware, Systems Disrupted Globally
West Pharmaceutical Services took systems offline globally after a May 4 ransomware attack with data exfiltration. Unit 42 is investigating; ransom may have been paid.
HIGHMedtronic Discloses Cyberattack on Corporate IT Systems
Medtronic reported unauthorized access to its corporate IT systems in a cyberattack, with no impact on medical devices or patient care operations. Data was compromised.
MEDIUMMoldova Health Agency Breach: Possible Data Theft Confirmed
Moldova's National Health Insurance Company reported a cyberattack that may have exposed limited personal data from its systems, weeks after initial compromise.
HIGHCISA Details Interlock Ransomware TTPs, IOCs in Joint Advisory
CISA and FBI released a joint advisory on Interlock ransomware, detailing TTPs, IOCs, and a shift from double extortion to data-theft-only attacks targeting healthcare and…
HIGHShinyHunters Breaches Medtronic, Steals 9M Records
ShinyHunters claims to have stolen 9 million records from medical device maker Medtronic, including personal information. The group threatens to leak the data.
HIGHHealthcare Data Breaches in Illinois and Texas Expose 600,000 Patients
Southern Illinois Dermatology, Saint Anthony Hospital, and North Texas Behavioral Health Authority disclose breaches affecting over 600,000 patients, exposing names, SSNs, and medical data.
HIGHRhysida Ransomware Group Breaches Tennessee Hospital, Exposes 337,000
Cookeville Regional Medical Center confirms a 2025 ransomware attack by the Rhysida group compromised the data of 337,000 individuals after the theft of 500GB of files.
HIGHUAC-0247 Threat Actor Targets Ukrainian Hospitals and Government with
The UAC-0247 threat actor is actively targeting Ukrainian municipal healthcare and government bodies, deploying malware to steal browser data, WhatsApp sessions, and credentials while moving laterally within networks.
HIGHChipSoft Ransomware Attack Disrupts Dutch Healthcare IT Services
Dutch healthcare IT provider ChipSoft was hit by a ransomware attack, forcing it to take patient and provider portals offline, disrupting critical medical administration across the Netherlands.
HIGHHims Data Breach Exposes Sensitive Medical and Prescription Data
A breach at telehealth provider Hims & Hers exposed highly sensitive patient health information, including details on prescriptions for weight loss, hair loss, and erectile dysfunction.
HIGHStryker Hit by Cyberattack, Windows Zero-Day Exploited, China Supercomputer Hacked
Medical device giant Stryker confirms a cyberattack, while a patched Windows zero-day is actively exploited and a Chinese supercomputer cluster is breached.
Stay Updated
Get the latest cybersecurity news delivered to your inbox.