Healthcare Tech Company Veradigm Exposed in Third-Party Breach

Veradigm, a healthcare technology organization, is warning patients of a data breach following a cybersecurity incident at a third-party vendor.
The malicious actor reportedly stole credentials from a Veradigm API environment managed by the third party, gained access to the environment, and then copied patient data. The organization says there have been no operational disruptions.
Stolen data includes Social Security Numbers; however, no clinical or medical information appears to be involved.
The Gentlemen ransomware group has claimed responsibility for the attack.
Ross Filipek, CISO at Corsica Technologies, comments, “The Gentlemen have become one of the busiest ransomware operations in a very short time. Their playbook makes healthcare especially exposed. They steal sensitive data and spread ransomware quickly across their networks. Their affiliates have shown a willingness to target healthcare without much restraint.
“Veradigm avoided an operational shutdown here, which is good. The stolen patient data could still have a long life. Past Gentlemen activity points toward extortion and public leaks. Stolen records can also fuel identity fraud or convincing phishing later.
“This is another reminder about the dangers of third-party access for healthcare organizations. Vendor credentials need tight controls, and sensitive data needs strong segmentation. Security teams also need monitoring that can catch unusual activity early. With this group, waiting for encryption is already waiting too long.”
Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!








