VYPR
breachPublished Jul 31, 2026· 1 source

CareCloud Data Breach Exposes Personal, Financial, and Medical Data of Over 350,000 Individuals

Healthcare IT provider CareCloud has disclosed a data breach impacting over 350,000 individuals, with personal, financial, and medical information compromised after an AWS environment was accessed.

Healthcare information technology company CareCloud is notifying at least 350,000 individuals that their sensitive data was stolen in a significant data breach.

The incident, which affected an electronic health record environment within the CareCloud Health division, was first detected as a disruption on March 16, 2026. Investigations by CareCloud revealed that unauthorized actors gained access to one of its Amazon Web Services (AWS) environments between March 10 and March 16, 2026.

During this period, the threat actors likely exfiltrated data from the compromised environment. A subsequent investigation, concluded on June 24, confirmed that the stolen information included a wide range of personal, financial, and medical details. This potentially compromised data encompasses names, addresses, Social Security numbers, dates of birth, driver’s license numbers, government ID numbers, financial account numbers, credit/debit card numbers, and medical and health insurance information.

Filings with various state Attorney General's Offices indicate that the breach has impacted at least 350,000 individuals. In response to the incident, CareCloud is offering affected individuals up to 24 months of complimentary identity theft protection, credit monitoring, and ID theft recovery services. This package includes a $1,000,000 insurance reimbursement policy.

CareCloud stated that it engaged external cybersecurity experts to assist in its response. These experts helped secure the affected environment, eliminate the threat, and confirm that no persistent unauthorized access remained. The company also affirmed that it is continuing to enhance the security of its systems and environments.

As of the latest reports, CareCloud has not yet disclosed the total number of individuals affected by the breach, nor have details regarding the specific threat actor responsible been made public. The company has not yet responded to requests for additional information.

This breach underscores the persistent risks faced by healthcare organizations, which handle vast amounts of highly sensitive personal and medical data, making them prime targets for cybercriminals. The compromise of AWS environments, as seen in this case, highlights the critical need for robust cloud security configurations and continuous monitoring.

The incident serves as a reminder for individuals to remain vigilant against potential identity theft and fraud, and to take advantage of the protection services offered by affected companies.

Synthesized by Vypr AI