Medical data breaches reach all-time high in 2023 — report

WASHINGTON, UNITED STATES — Medical data breaches in the United States reached an all-time high in 2023, compromising the privacy of an estimated 133 million individuals.
725 hacking incidents in 2023
The U.S. Department of Health and Human Services tracked a staggering 725 major hacking incidents last year, each affecting at least 500 patient records. The health records of 133 million people were compromised in these breaches.
According to a recent report by the HIPAA Journal, the healthcare sector has consistently led all industries in reported data breaches over the past five years, as stated in the Identity Theft Resource Center’s (ITRC) 2023 Annual Data Breach Report.
Cybercriminals are increasingly targeting medical records due to the wealth of personal information they contain, which can be exploited for identity theft and other fraudulent activities.
Eva Velasquez, CEO of the Identity Theft Resource Center, emphasized the allure of medical records for hackers, describing them as “a treasure trove of very rich data sets.”
Specifically, cybercriminals are looking for financial information, Social Security numbers, medical record account numbers, and health insurance policy data that they can use for various forms of identity theft.
With the digitization of medical records and the widespread adoption of electronic health systems, sensitive patient information has become more vulnerable to cyber-attacks on a massive scale.
While healthcare organizations are investing in enhanced security measures and working with vendors to upgrade their systems, experts warn that identity thieves will continue to find ways to access this valuable data.
Why health institutions are vulnerable to hacks
James Lee, the ITRC’s chief operating officer, pointed out that medical facilities and doctors’ offices often have “less security” than other companies.”
He noted that medical institutions usually outsource “vendors and their contractors” for billing, payments, and management of patient records.
“All of those [vendors] have different pieces of information, but they all have access to the entire suite of information about you and others,” Lee explained.
“So, it’s possible for [hackers] to attack a single organization and to get the records of thousands of other companies and all of the information those thousands of companies have.”
Individuals are advised to use strong passwords for all online medical accounts and remain vigilant for signs of compromised personal information.
Read more here.
Related news
- UnitedHealth pays ransom to protect patient data after cyberattack · 29 Apr
- Hire Velocity launches healthcare subsidiary Hire Health · 29 Apr
- AI boosts physician-nurse teamwork at Stanford Hospital · 27 Apr
Disclosure: Outsource Accelerator uses AI tools in the backend of its editorial workflow. Every article is reviewed and verified by a human editor before publication.
Stay ahead in healthcare outsourcing. Join thousands of healthcare and business leaders who rely on Outsource Accelerator for the news, trends, and expert insights shaping medical BPO and the future of care delivery. Subscribe to our free newsletter and never miss an update.

Independent




