BTC$84,744-0.06% LTC$70.31+4.13% XMR$539.16-1.74%
TorPortal TorPortalMarkets, mirrors, dark web news
The Record · Aug 19, 2026 · 1 min read · Original story

Electronic health record company CareCloud says 3.7 million people affected by breach

Electronic health record company CareCloud says 3.7 million people affected by breach
Electronic health record company CareCloud says 3.7 million people affected by breach

One of the largest hospital technology providers told federal regulators that 3.7 million people were impacted by a data breach in March.

Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.

In breach notification letters to victims filed in multiple states, CareCloud said a hacker had access to one of their AWS environments from March 10 to March 16 and was able to exfiltrate data.

The stolen data includes personal information, Social Security numbers, ID numbers, credit and debit card information as well as medical information and insurance data.

CareCloud initially reported the attack to law enforcement but by March 24 company officials decided to inform the Securities Exchange Commission (SEC) “in light of the sensitivity of the potentially affected information and the potential consequences of the incident.”

Among the 3.7 million affected, more than 270,000 are in Texas, 23,000 are in South Carolina and nearly 58,000 are in Oregon. New Hampshire, Massachusetts and California did not say how many residents were impacted.

CareCloud is a large provider of technology and software to hospitals and medical practices, serving more than 45,000 providers. They offer electronic health record systems as well as digital revenue and business products. The company reported $120.5 million in revenue in the last fiscal year.

No hacking group took credit for the incident. Large electronic health record companies have been repeatedly targeted by hackers over the last year, including one serving more than 2,000 hospitals in the U.S.

References in this story

  1. Healthcare software firm CareCloud informs SEC of potential patient data leak therecord.media The healthcare software firm CareCloud warned the Securities and Exchange Commission that a cyberattack may have resulted in the leak of patient data.
  2. CareCloud (CCLD) Investor News & Company Updates ir.carecloud.com Get the latest CareCloud investor news, financial reports and announcements. Track company updates and stock performance.
  3. Software provider to more than 2,000 US hospitals says hackers stole employee and customer data therecord.media Craneware, which is headquartered in Edinburgh and listed on London's AIM market, told investors it detected unauthorized access to a “subset” of its data environment and has since brought in outside forensic…
  4. Advanced Cyber Threat Intelligence | Recorded Future www.recordedfuture.com Get real-time, actionable cyber threat intelligence with Recorded Future. Mitigate cyber risks, prioritize threats, and proactively secure your organization.
  5. Advanced Cyber Threat Intelligence | Recorded Future www.recordedfuture.com Get real-time, actionable cyber threat intelligence with Recorded Future. Mitigate cyber risks, prioritize threats, and proactively secure your organization.
  6. jon greig (@jgreigj) on X twitter.com @TheRecord_Media cybersecurity reporter. formerly @zdnet @cambodiadaily @haitiantimes_ — send tips to [email protected] or signal: jgreig.51
  7. jon greig (@jgreig.bsky.social) bsky.app cybersecurity reporter for The Record. formerly: zdnet, techrepublic, blavity, haitian times, cambodia daily — send tips to [email protected] or signal: jgreig.51

Guides related to this story

← Back to all news