U.Ok.-based healthcare billing software program maker Craneware is responding to a cyberattack wherein hackers stole a “important quantity” of buyer information from its methods, the corporate mentioned on Monday.
The corporate mentioned the hackers seem to have been expelled from its methods, however its investigation into the breach is ongoing, in line with an announcement filed with the London Stock Exchange.
Craneware’s flagship accounting and billing software program is utilized by hundreds of clinics, hospitals, and pharmacies throughout america. The corporate didn’t say precisely what sorts of information had been taken within the breach, solely noting {that a} “share” of worker information, buyer information, and companion information had been exfiltrated.
The corporate, whose software program helps healthcare suppliers invoice sufferers for companies, handles massive quantities of medical information and affected person information on behalf of its clients. When it purchased Florida-based pharmacy software program maker Sentry in 2021, Craneware said it gained access to the corporate’s 147 million affected person information that had been collected over 20 years.
Craneware CEO Keith Neilson didn’t instantly reply to TechCrunch’s questions in regards to the incident, or if the hackers have contacted the corporate with any calls for, akin to a ransom.
It’s not but clear if the corporate’s methods can obtain e mail amid the continued cyberattack.
Whereas particulars of the hack are nonetheless beneath investigation, that is the newest information breach in current months the place hackers have focused tech corporations that offer tech and companies to the U.S. healthcare sector. By compromising software program that many healthcare suppliers use to investigate and perceive their billing processes, hackers can entry huge quantities of affected person medical and health-related information, and extort the businesses with threats of publicly releasing the knowledge.
Craneware is the newest well being tech large to be breached prior to now 12 months.
In March, healthcare income tech agency TriZetto confirmed hackers stole greater than 3.4 million folks’s private and well being information from its methods throughout an earlier cyberattack. That very month, medical information storage large CareCloud reported a breach of considered one of its shops of sufferers’ digital well being information, however has not but mentioned how a lot information was taken.
Final July, medical billing firm Episource started notifying no less than 5.4 million folks that their info had been stolen by hackers.
The biggest ever breach of U.S. medical and healthcare information occurred in 2024, when a Russian-speaking ransomware gang hacked UnitedHealth-owned Change Healthcare. The hackers stole the medical and affected person information of no less than 192 million folks, which the corporate conceded affected a “substantial proportion of individuals in America.”
Once you buy by hyperlinks in our articles, we could earn a small fee. This doesn’t have an effect on our editorial independence.
