CareCloud confirms 3.7M patients had their medical records stolen in data breach | TechCrunch
2026-08-19 08:00Cybersecurity🔥 30.9 heat score
1sources
1days unfolding
30.9heat score
5mentions
SummaryAI generated
The technology company CareCloud in New Jersey, USA, confirmed that its medical data had been hacked, with 3.7 million patients affected. The incident occurred in August 2026 and is currently recognized as the fifth-largest health data theft case of that year. Hackers accessed CareCloud’s cloud storage environment for six days and obtained a large amount of personal data including names, addresses, social security numbers, medical records, government identification documents, and bank financial information from their Amazon Web Services accounts. On Monday, CareCloud submitted documents to the U.S. Department of Health and Human Services (HHS) to disclose the breach. After updating the number of victims on Tuesday, it is unclear whether the number of affected individuals will increase further. CareCloud’s CEO, Stephen Snyder, has not responded to questions regarding whether payment was made to the hackers, who are responsible for network security, or whether he will resign.