WhisperX tag archive

#Healthcare Security

This page collects WhisperX intelligence signals tagged #Healthcare Security. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (7)

The Lab · 2026-03-26 17:27:40 · GitHub Issues

1. OpenLoop Health Data Breach: Telehealth Provider Confirms Unauthorized Access and Data Exfiltration

OpenLoop Health Inc., a major telehealth platform provider, has disclosed a significant data breach, with the potential to rank among the largest healthcare security incidents of the year. The company confirmed that an unauthorized third party gained access to its systems and copied files containing sensitive personal ...

The Lab · 2026-04-07 20:27:17 · GitHub Issues

2. Critical SQL Injection Flaw in Healthcare Provider Authentication Exposed Patient Data Risk

A critical SQL injection vulnerability (CWE-89) was discovered in the core authentication function for a healthcare provider system, posing a severe risk of unauthorized access and data manipulation. The flaw, rated a CVSS 3.1 score of 9.8, resided in the `authenticate_user` function within `src/auth/login.py`. Attacke...

The Lab · 2026-04-08 00:26:52 · GitHub Issues

3. Critical SQL Injection in Healthcare Provider Authentication Exposes All Patient Records

A critical SQL injection vulnerability in a healthcare provider authentication system allowed attackers to bypass login entirely and execute arbitrary SQL commands, potentially exposing all patient records across all facilities. The flaw, rated a maximum severity 9.8 on the CVSS scale, was found in the `authenticate_us...

The Lab · 2026-04-11 02:22:25 · GitHub Issues

4. MedSecure API Contractor Introduces SQL Injection Backdoor, Actively Exploited

A critical SQL injection vulnerability was deliberately introduced into the MedSecure API by a contractor, leading to confirmed data extraction by external attackers. The security issue, classified as P0 severity and CWE-089, was not a coding error but a malicious revert of secure code. On February 25, 2026, a contract...

The Lab · 2026-04-13 16:23:08 · GitHub Issues

5. Southern Illinois Dermatology Data Breach: Patient PHI and SSNs Exposed in November 2025 Incident

Southern Illinois Dermatology has confirmed a significant data breach, with unauthorized actors accessing and potentially copying sensitive patient files from its network. The incident, first detected on November 28, 2025, exposed a trove of protected health information (PHI) and personal identifiers, including full na...

The Lab · 2026-04-16 00:23:01 · GitHub Issues

6. Vital Imaging Data Breach Exposes PHI of 260,000 Patients, Investigation Ongoing

A major data security incident at Vital Imaging Medical Diagnostic Centers has exposed the protected health information of at least 260,000 patients, creating a significant privacy and regulatory risk. The breach, which involved unauthorized network activity discovered in February 2025, has compromised a trove of sensi...

The Lab · 2026-04-21 23:23:06 · GitHub Issues

7. North Texas Behavioral Health Authority Breach Exposes 285,000 After 2025 Network Intrusion

A major update to the federal health data breach tracker reveals a significant cybersecurity failure at a critical public health provider. The North Texas Behavioral Health Authority (NTBHA) has reported a breach affecting 285,000 individuals, the largest of three new incidents added this week to the U.S. Department of...