closeup photo of turned-on blue and white laptop computer
Photo by Philipp Katzenberger on Unsplash
Security

CareCloud confirms 3.7M patients had their medical records stolen in data breach

Original source: TechCrunch 8/19/2026
๐Ÿค– This summary was written by AI based on public reporting from TechCrunch. It is not a reproduction of the original article. Read the original โ†’

CareCloud, a healthcare IT and revenue cycle management company serving medical practices across the U.S., has disclosed that a cyberattack compromised the personal and medical records of roughly 3.7 million patients. The breach ranks among the largest in the American healthcare industry reported this year.

The incident underscores an ongoing and intensifying wave of cyberattacks targeting healthcare organizations, which hold extraordinarily sensitive data including diagnoses, treatment histories, and insurance information. Unlike financial data, medical records cannot simply be cancelled or reissued, making their exposure particularly harmful and long-lasting for affected individuals.

CareCloud has not yet publicly detailed the specific type of attack or the full timeline of events, but the scale of the breach will likely draw scrutiny from federal regulators, including those enforcing HIPAA compliance standards.

Advertisement