PrivacySignal
Breach

CareCloud Data Breach Impacts Over 350,000

DataBreaches.net · · International · Data Breaches

Healthcare IT company CareCloud is notifying more than 350,000 people that their data was stolen after hackers accessed its AWS environment in March 2026, disrupting an electronic health record system within its CareCloud Health division. The company's investigation confirmed unauthorized access to patient and possibly provider information stored in that cloud environment.

Why this matters: Health records are not like a leaked password you can reset. They contain diagnoses, medications, mental health history, and personal details people share with doctors because they have to. When that data gets stolen, people lose control of some of the most sensitive information about their lives. CareCloud held records for hundreds of thousands of people. The real accountability question is whether its cloud security was anywhere close to adequate for what it was storing.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
BleepingComputer · · International

Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites

Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer's website and pushed updates that created a hidden user account. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

CenterPoint Energy confirms customer data stolen in cyberattack

CenterPoint Energy disclosed a breach compromising some customers' personal information after an attacker leaked data allegedly stolen from the utility company. [...]

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
HIPAA Journal · · US Federal

Nationwide Home Health Care Provider Announces Major Data Breach

Multiple home health care providers, including Louisiana-based LHC Group, Provident Behavioral Health in Missouri, and Elixir, have reported data breaches affecting patient information. The incidents add to a growing pattern of cyberattacks targeting health care organizations that handle sensitive personal and medical data.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

CISA: Critical VMware RCE flaw now exploited by ransomware gangs

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned security teams that ransomware gangs have now joined ongoing attacks exploiting a critical VMware vCenter vulnerability patched in July. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →