Supply chain ⛓ Supply Chain

Hospitals Third-Party Breach (July 2021)

📅 2021-07-01 🏢 ClearBalance
Primary Source ↗

Incident Details

ClearBalance Data Incident Impacts Over 200,000 US Patients' PII | TechTarget. A new cyberattack is impacting over 200,000 patients across the country. ClearBalance, a California-based company, is notifying over 200,000 customers that their personally identifiable information (PII) may have been stolen during a recent email hacking event. ClearBalance, a “leading provider of consumer-friendly patient financing programs to U.S. hospitals and health care systems,” according to its website, serves over 4 million patient accounts nationwide. Third-party company: ClearBalance.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
ClearBalance
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2021-07-01 Breach occurred
  2. 2021-07-13 Publicly disclosed