36
top 5 comments
sorted by: hot top new old
[-] schipelblorp@sh.itjust.works 15 points 5 days ago* (last edited 5 days ago)

Veradigm provides health record technology and management systems to thousands of hospitals and doctors across the world, reporting $594 million in revenue in 2024.

This is a real fucking problem. There are so many third-parties involved with managing PHI, it's impossible to secure it. And no doubt people are trying to grab live audio of doctors visits to train AI, too.

[-] FineCoatMummy@sh.itjust.works 4 points 5 days ago

so many third-parties involved with managing PHI, it’s impossible to secure it.

For sure! I got notified my PHI was breached. By a company I never even heard of! And certainly never directly used. I never even figured out the chain, from health services I used, to the breached co. Might have been multiple others between. Given how often these breaches happen, defacto we have no medical privacy.

And no doubt people are trying to grab live audio of doctors visits

Happens already, yah! New England Journal of Medicine has a paper about the privacy risks. Prob lots of other papers too, that's just what I had in my bookmark list.

These systems capture audio of clinical encounters and generate transcripts and structured clinical notes, yet vendor practices differ substantially in how long each data type is retained and whether it is used for AI training.

Offices are supposed to have signs, and/or the dr should tell the pt. But drs are human, right? They may forget! And sometimes, you may be there in your worst, vulnerable moments. When you are badly injured, or distressed.

It chantges the whole trust relationship between dr & pt.

[-] pageflight@piefed.social 6 points 5 days ago

I thought this was a duplicate, but no, same company lost data due to stolen credentials in 2024.

a data security incident at one of its customers resulted in credential theft that allowed access to a Veradigm storage account

[-] Cyber@feddit.uk 5 points 5 days ago

They just don't want to protect themselves:

Veradigm provides health record technology and management systems to thousands of hospitals and doctors across the world, reporting $594 million in revenue in 2024. [...] Formerly known as Allscripts, Veradigm has experienced cybersecurity incidents in the past. It was attacked by the SamSam ransomware gang in 2019 and faced several class action lawsuits due to the incident, which caused outages across thousands of hospitals. The company also reported a different cybersecurity incident in December 2025, telling the U.S. Department of Health and Human Services that 2,672,036 people had health data exposed during a breach in December 2024.

$594M and they get hit 3 times (that we know of).

Why not hire a security consultant for a few months...

[-] lemmysmash@piefed.social 2 points 5 days ago

Roses are red.

Violets are kitsch.

Electronic health record company says customer data stolen in breach

this post was submitted on 10 Sep 2026
36 points (100.0% liked)

Cybersecurity

10578 readers
49 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 3 years ago
MODERATORS