Community Health Center (CHC), a leading healthcare provider in Connecticut, is notifying more than 1 million patients about a data breach.

In a filingwith the Maine attorney general, it is stated that the attackers gained access to the organization's network in mid-October 2024. However, the breach was discovered on January 2, 2025.
See also: NorthBay Health breach affects 569,000 people
It is said that hackers stole files with personal and health information of 1,060,936 patients. However, according to the Community Health Center, there was only a data breach. No systems were encrypted and its operations were not affected.
The organization hired cybersecurity experts to assess the impact of the attack and secure its systems. The investigation indicated that “ a skilled hacker ” was behind the attack .
Community Health Center: Data breach
The personal and medical data that have been affected are:
- Names
- Dates of birth
- Addresses
- Phone numbers
- Social Security Numbers
- Medical diagnoses
- Treatment details
- Test results
- Health insurance
See also: New York Blood Center Enterprises hit by ransomware
Healthcare organizations: Cyberattack protection strategies
One of the most effective protection strategies is training staff. Staff who are informed about the techniques used by attackers can recognize and, to some extent, avoid cyberattacks.
Implementing up-to-date security protocols is another important strategy. This includes regularly updating software and systems, installing the latest security patches , and implementing procedures that protect data.
Using advanced security tools, such as systems prevention intrusion and cyberattack detection and prevention tools, can help address threats before they cause damage.
See also: Frederick Health hit by Ransomware attack

Additionally, hospitals must implement access policies to control who has access to patient data. This may include the use of credentials, such as usernames and passwords ,as well as implementing policies that require staff to change their passwords regularly.
They can also use external security services to monitor their networks for potential attacks. These services can include monitoring network traffic, detecting “anomalies” and responding to potential threats.
Finally, creating a breach response plan can be crucial. This plan should include threat analysis , attack identification, isolation of the compromised system, and restoration of systems to a secure state.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
Source: www.bleepingcomputer.com
