• Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions
Sunday, September 20, 2026
freevirtualsolutions.com
  • Home
  • Virtual Assistant
  • Enterprise Technology
  • Customer Support
  • Marketing Support
  • Workforce Management
No Result
View All Result
  • Home
  • Virtual Assistant
  • Enterprise Technology
  • Customer Support
  • Marketing Support
  • Workforce Management
No Result
View All Result
Free Virtual Solutions
No Result
View All Result
Home Enterprise Technology

Veradigm Data Breach Exposes Patient Social Security Numbers Through Vendor API

Ermias S. by Ermias S.
6 days ago
in Enterprise Technology
0
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter



Healthcare technology provider Veradigm has disclosed a data breach in which attackers used credentials stolen from a third-party vendor to access and copy sensitive patient information.

The Chicago-based company, formerly known as Allscripts Healthcare Solutions, said the incident affected a limited number of customers and did not disrupt its operations. Veradigm supplies electronic health record, e-prescribing, patient engagement, practice management, and revenue cycle software to healthcare organizations across the United States.

According to Veradigm’s filing with the US Securities and Exchange Commission, the compromised credentials belonged to a vendor and provided access to an application programming interface used for customer services.

The exposed information included personal data and, for some patients, Social Security numbers. Veradigm said clinical and medical records were not accessed.

“The vendor’s compromised credentials provided access only through that limited interface and did not provide access to any other part of the Company’s environment, including the Company’s broader network, servers, databases, or other systems,” Veradigm said in its SEC filing.

The company activated its incident response process, contacted law enforcement, and began notifying affected customers and individuals. Credit monitoring is being offered where appropriate. Veradigm said its investigation remains active, but it does not currently expect the incident to materially affect its financial condition or operations.

The Gentlemen Ransomware Group Claims Responsibility

Veradigm did not publicly identify the attacker. However, The Gentlemen ransomware group claimed responsibility and alleged that it stole 3.5 million patient records containing names, addresses, Social Security numbers, email addresses, phone numbers, and guarantor information.

Those claims have not been independently verified.

The Gentlemen operates as a double-extortion group that steals data and may encrypt systems to pressure victims into paying. The operation has claimed hundreds of organizations across healthcare, manufacturing, technology, transportation, and financial services.

John Bruggeman, vCISO at CBTS, said the incident illustrates how narrowly scoped vendor access can still create substantial exposure.

“The damage an attacker can do depends on what that third party’s credentials can reach,” Bruggeman said. “In this case, the compromised 3rd party is reported to have access only to a limited amount of data through a specific API.”

Bruggeman warned that organizations must continuously review vendor credentials, service accounts, API access, machine identities, and emerging AI agents.

“Stolen credentials are particularly difficult to detect because the activity can initially look legitimate,” he said.

The Veradigm breach highlights a growing healthcare cybersecurity problem: attackers may not need to penetrate a company’s central network when a trusted vendor credential already provides a path to valuable patient data.



Source_link

Tags: APIBreachdataExposesnumbersPatientSecuritySocialVendorVeradigm
Previous Post

What G2-Reviewed Products Reveal (G2 Data, 2026)

Next Post

Maps and a compass | Seth’s Blog

Next Post
Communications hygiene (and the demise of texting)

Maps and a compass | Seth's Blog

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Categories

  • Customer Support (1,761)
  • Enterprise Technology (4,559)
  • Marketing Support (3,884)
  • Virtual Assistant (4,144)
  • Workforce Management (1,534)

Free Virtual Solutions

Welcome to freevirtualsolutionsThe goal of freevirtualsolutions is to give you the absolute best news sources for any topic! Our topics are carefully curated and constantly updated as we know the web moves fast so we try to as well.

Category

  • Customer Support
  • Enterprise Technology
  • Marketing Support
  • Virtual Assistant
  • Workforce Management

Recent Post

  • Bot And Agent Trust Management Software, Q2 2026
  • Revolut Data Breach Shows How Trusted Government Email Can Become a Hacker’s Master Key
  • Upside/downside
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions

Copyright © 2023 Freevirtualsolutions.com | All Rights Reserved.

No Result
View All Result
  • Home
  • Virtual Assistant
  • Enterprise Technology
  • Customer Support
  • Marketing Support
  • Workforce Management

Copyright © 2023 Freevirtualsolutions.com | All Rights Reserved.

Chat with us

Hi there! How can I help you?