Supply chain
β Supply Chain
Family Healthcare Third-Party Breach (January 2024)
Primary Source βIncident Details
Singing River Health System Confirms Ransomware Attack Affected 895,000 Patients. Singing River Health System has confirmed that 895,204 individuals were affected by an August 2023 ransomware attack. Data breaches have also been Singing River Health System has completed its file review and has confirmed that the PHI of 253,000 patients was compromised in an August 2023 ransomware attack. Data breaches have also been reported by Highlands Oncology Group, Fincantieri Marine Group, Senior Scripts, and Family Healthcare. Singing River Health System in Mississippi experienced a ransomware attack in August 2023 that took its IT systems out of action for several days, including its electronic medical record system. Without access to patient data and essential IT systems, operations were disrupted, although care continued to be provided to patients throughout. The Rhysida ransomware group claimed responsibility for the attack. Third-party company: Brady Martz & Associates.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Brady Martz & Associates
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2024-01-01 Breach occurred
- 2024-01-17 Publicly disclosed