Business management solutions provider Serviceaidehas notified the Department of Health and Human Services (HHS) that a data breach has occurred affecting the personal and medical information nearly half a million Catholic Health patients.
See also: 437,000 affected by Ascension Health breach

Serviceaide , a California-based company that provides solutions to organizations worldwide, discovered in November 2024 that an Elasticsearch database maintained on behalf of its client – the New York-based nonprofit health system Catholic Health – had been accidentally exposed to the public .
The investigation showed that the database was exposed from September 19 to November 5, 2024.While Serviceaide did not find evidence of data extraction, it said it could not completely rule out the possibility that it had occurred.
See also: Yale New Haven Health: Data breach affects 5.5 million patients
According to a data breach notice posted on Serviceaide, the exposed data varies by individual, but may include: name, social security number (SSN), date of birth, medical record number, patient account number, medical information, health insurance information, prescription and treatment information, clinical data, healthcare provider information, email or username, and password.

Affected individuals are being notified and offered free credit monitoring and identity theft protection for 12 months . Serviceaide has notified the Department of Health and Human Services (HHS), according to the agency's incident tracker , that more than 483,000 people have been affected by the data breach.
It is not uncommon for data breaches in the healthcare sector to affect hundreds of thousands of people, while some incidents have affected millions or even tens of millions of people.
See also: Frederick Health: Data breach affects nearly 1 million patients
Based on the above, it becomes clear how sensitive and valuable personal and medical data is, especially in the healthcare sector. This particular breach shows that even large, established technology companies like Serviceaide, which provide solutions on a global level, are not immune to errors or omissions that can lead to serious breaches data.
Source: securityweek
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
