Supply chain
β Supply Chain
Fullerton Health Third-Party Breach (October 2021)
Primary Source βIncident Details
Third-party data breach in Singapore hits healthcare provider. Fullerton Health says its third-party vendor, which platform facilitates appointment booking, had suffered a security breach first detected on October 19 that compromised patients’ personal data, including name and contact details as well as bank account information. Another third-party security breach has been reported in Singapore, this time, affecting patients of Fullerton Health and compromising personal data that included bank account details in “a few cases”. The affected vendor Agape Connecting People, which platform facilitates appointment booking, first detected the breach on October 19 and appeared to affect only Fullerton Health. Third-party company: Agape Connecting People.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Agape Connecting People
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2021-10-01 Breach occurred
- 2021-10-26 Publicly disclosed