Supply chain
⛓ Supply Chain
Hospitals Third-Party Breach (July 2021)
Primary Source ↗Incident Details
ClearBalance Data Incident Impacts Over 200,000 US Patients' PII | TechTarget. A new cyberattack is impacting over 200,000 patients across the country. ClearBalance, a California-based company, is notifying over 200,000 customers that their personally identifiable information (PII) may have been stolen during a recent email hacking event. ClearBalance, a “leading provider of consumer-friendly patient financing programs to U.S. hospitals and health care systems,” according to its website, serves over 4 million patient accounts nationwide. Third-party company: ClearBalance.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- ClearBalance
- Supply Chain Attack
- ✅ Confirmed third-party / vendor compromise
Timeline
- 2021-07-01 Breach occurred
- 2021-07-13 Publicly disclosed