← Back to Tech & Science

Veradigm Discloses Patient Data Breach Linked to The Gentlemen Ransomware Group

Tech & ScienceAI-Generated & Algorithmically Scored·

AI-generated from multiple sources. Verify before acting on this reporting.

CHICAGO (AP) — Healthcare technology giant Veradigm disclosed on Wednesday that a cybersecurity incident at one of its third-party vendors has exposed the personal data of millions of patients, an attack claimed by the ransomware gang known as The Gentlemen. The breach marks a significant escalation in cyber threats targeting the U.S. healthcare infrastructure, highlighting vulnerabilities within supply chains.

The incident was triggered by unauthorized access to a vendor's environment, where attackers stole credentials and deployed ransomware. Veradigm stated that while its own systems were not directly compromised, the third-party provider's breach allowed malicious actors to exfiltrate sensitive information. The Gentlemen group subsequently asserted responsibility for the intrusion, demanding payment in cryptocurrency to prevent the public release of the stolen data.

The compromised data includes names, dates of birth, Social Security numbers, and medical history for a substantial number of individuals across the United States. Veradigm confirmed that no financial data or credit card information was accessed during the incident. The company immediately engaged cybersecurity experts to contain the threat and is working with law enforcement agencies to investigate the scope of the breach.

The Gentlemen ransomware group has been active in targeting healthcare organizations, leveraging stolen credentials from vendors to gain entry into larger networks. In this case, the attackers exploited weak security measures at the third-party vendor to pivot toward Veradigm's patient records. The group has a history of threatening to leak data if ransoms are not paid, creating pressure on victims to settle quickly.

Veradigm notified affected patients and relevant state attorneys general as required by privacy laws. The company is offering credit monitoring services to those whose Social Security numbers were exposed. Healthcare providers using Veradigm's systems have been alerted to the situation, though officials stated that patient care operations remain unaffected.

The breach underscores the growing risk of supply chain attacks in the healthcare sector. As organizations increasingly rely on third-party vendors for data management and IT services, a single point of failure can compromise the security of entire networks. Industry experts warn that similar incidents may become more frequent as cybercriminals refine their tactics to target weaker links in the ecosystem.

Questions remain regarding the full extent of the data exfiltration and whether additional records were accessed before the breach was detected. Veradigm has not confirmed if the attackers successfully encrypted any systems or if the threat is fully contained. The company continues to cooperate with federal investigators as they work to trace the origin of the attack and identify the individuals behind The Gentlemen group.

As the investigation unfolds, patients are advised to monitor their accounts for signs of identity theft. Veradigm has pledged to keep stakeholders informed as more details emerge about the incident and its long-term implications for healthcare data security.

Discussion

0 / 2000