Supply chain
β Supply Chain
EHR Vendor Veradigm $10.5M Data Breach Lawsuit Settlement
Primary Source βIncident Details
Electronic health records vendor Veradigm (formerly Allscripts Healthcare Solutions, rebranded 2022) agreed to
pay $10.5 million to settle a class-action lawsuit arising from a data breach affecting patient data from
physician practices using Veradigm’s EHR platform. Veradigm serves approximately 700,000 physicians in the US.
The settlement covered affected patients whose personal and health data was exposed through the breach.
Veradigm had a previous major cybersecurity incident in January 2018 when SamSam ransomware disrupted its
services for approximately 1,500 physician practices. The 2026 settlement relates to a more recent breach. The
$10.5M figure represents one of the larger EHR vendor breach class-action settlements.
Technical Details
- Initial Attack Vector
- Veradigm (formerly Allscripts Healthcare Solutions) suffered a data breach affecting physician practice clients; the breach resulted in class-action litigation that settled for $10.5 million
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2026-01-21 Breach occurred
- 2026-01-21 Publicly disclosed