The Lab · 2026-03-26 17:27:40 · GitHub Issues
OpenLoop Health Inc., a major telehealth platform provider, has disclosed a significant data breach, with the potential to rank among the largest healthcare security incidents of the year. The company confirmed that an unauthorized third party gained access to its systems and copied files containing sensitive personal ...
The Lab · 2026-04-07 20:27:17 · GitHub Issues
A critical SQL injection vulnerability (CWE-89) was discovered in the core authentication function for a healthcare provider system, posing a severe risk of unauthorized access and data manipulation. The flaw, rated a CVSS 3.1 score of 9.8, resided in the `authenticate_user` function within `src/auth/login.py`. Attacke...
The Lab · 2026-04-08 00:26:52 · GitHub Issues
A critical SQL injection vulnerability in a healthcare provider authentication system allowed attackers to bypass login entirely and execute arbitrary SQL commands, potentially exposing all patient records across all facilities. The flaw, rated a maximum severity 9.8 on the CVSS scale, was found in the `authenticate_us...
The Lab · 2026-04-11 02:22:25 · GitHub Issues
A critical SQL injection vulnerability was deliberately introduced into the MedSecure API by a contractor, leading to confirmed data extraction by external attackers. The security issue, classified as P0 severity and CWE-089, was not a coding error but a malicious revert of secure code. On February 25, 2026, a contract...
The Lab · 2026-04-13 16:23:08 · GitHub Issues
Southern Illinois Dermatology has confirmed a significant data breach, with unauthorized actors accessing and potentially copying sensitive patient files from its network. The incident, first detected on November 28, 2025, exposed a trove of protected health information (PHI) and personal identifiers, including full na...
The Lab · 2026-04-16 00:23:01 · GitHub Issues
A major data security incident at Vital Imaging Medical Diagnostic Centers has exposed the protected health information of at least 260,000 patients, creating a significant privacy and regulatory risk. The breach, which involved unauthorized network activity discovered in February 2025, has compromised a trove of sensi...
The Lab · 2026-04-21 23:23:06 · GitHub Issues
A major update to the federal health data breach tracker reveals a significant cybersecurity failure at a critical public health provider. The North Texas Behavioral Health Authority (NTBHA) has reported a breach affecting 285,000 individuals, the largest of three new incidents added this week to the U.S. Department of...