The CareCloud data breach is under investigation after the healthcare software company revealed that hackers may have gained access to systems that store electronic medical records . The incident occurred on March 16 and caused a temporary outage, but also raises concerns about the potential exposure of sensitive patient data.

In a filing with the U.S. Securities and Exchange Commission, CareCloud said one of its electronic health record (EHR) environments was impacted for about eight hours. The company restored access the same day but confirmed that an unauthorized third-party user gained temporary access to the system.
See also: Intesa Sanpaolo: Fine for previous data leak
CareCloud Data Breach: Unauthorized Access Confirmation
CareCloud said the data breach was limited to a single environment within its CareCloud Health. The company operates six such environments and believes its remaining systems, platforms and data were not affected.
“The Company continues to evaluate whether, and to what extent, patient information or other data was breached or extracted. It is also evaluating the categories and volume of such data,” the filing states.
At this stage, there is no confirmation whether data was stolen, but the possibility of exposure remains.
Main Concern is Patient Data Exposure
The CareCloud data breach is significant because the affected system stores electronic medical records, one of the most sensitive categories of data in the healthcare sector.
See also: Hackers impersonate CERT-UA to distribute RATs on government networks

Such systems typically include personal details, medical histories, treatment records and financial information. Even limited unauthorized access can create long-term risks for patients, such as identity theft or misuse of medical data.
After the incident, CareCloud said it notified its cybersecurity insurance provider and brought in external experts to investigate.
The data breach has also been reported to law enforcement authorities.
The company said it has since restored all affected systems and believes the attacker no longer has access.
See also: Iran: Hackers breached FBI Director's personal email

Limited Operational Impact
While operations were quickly restored, CareCloud described the data breach as a “material cybersecurity incident.” The company said the decision was based on the sensitivity of the potentially affected data and the potential legal, regulatory and reputational implications.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
It added that the incident has not had a material impact on its financial situation so far, but the full impact is still being assessed.
