PrivacySignal
Breach

Data breach at medical billing firm MCBS affects 1.26 million people

BleepingComputer · · International · Data Breaches

Medical Computer Business Services (MCBS), a healthcare billing company, has disclosed a 2025 network breach that exposed sensitive information belonging to more than 1.26 million people. The company has not yet detailed what specific data was compromised or how long attackers had access.

Why this matters: Medical billing firms sit at a quiet intersection of your health history and your financial life. They hold diagnoses, insurance details, and payment records — information people never chose to share with a billing contractor but had no real option to refuse. Most of the 1.26 million people affected probably had no idea MCBS existed before this breach. That is the problem. When sensitive data flows through third-party processors you never interact with, you lose any practical ability to protect it. Someone else made the security decisions. You absorb the consequences.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Related stories

Breach
CyberScoop · · US Federal

Here’s what Anthropic found when it turned Mythos loose on encryption algorithms

Anthropic's Claude Mythos model identified mathematical weaknesses in a post-quantum cryptography candidate and a simplified version of AES, according to findings from the company. The results mark one of the more concrete demonstrations of AI being used to actively probe the foundations of modern encryption.

Who should care: Cybersecurity · Privacy officers · Administrators · AI governance · Lawyers · General readers · Policy

#breach#ai-governance#ai#privacy Read original →
Breach
BleepingComputer · · International

Is Your SSO Protected Against Modern Credential Attacks?

A compromised SSO login can provide attackers with access to multiple enterprise applications and services. Specops Software explains how stronger passwords, phishing-resistant MFA, and identity hardening help secure modern SSO environments and the applications they protect. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Florida SUD Treatment Provider Announces 145,700-record Data Breach

Operation PAR, a Florida nonprofit providing substance use disorder treatment, has disclosed a data breach affecting more than 145,700 individuals. The breach was reported in The HIPAA Journal, though specific details about what data was exposed or how the incident occurred have not been made public in the available information.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →