Veradigm warns of patient data breach after ransomware gang claims attack
Healthcare vendor Veradigm disclosed a patient data breach via a third-party vendor's credentials, which the Gentlemen ransomware gang claims involved 3.5 million records.
Veradigm, formerly Allscripts, told the SEC that an attacker used compromised credentials from a third-party vendor to access a customer-service API and copy patient data, including personal details and Social Security numbers, without touching clinical data or the broader network. The Gentlemen ransomware group listed Veradigm on its leak site claiming 3.5 million patient records and threatened to publish the data by September 11 unless ransom negotiations start. The gang, active since mid-2025, runs double extortion across Windows, Linux, NAS, BSD and ESXi, lists 800+ victims in 86 countries, and has been linked to a SystemBC proxy botnet and the GentleKiller EDR killer. Veradigm is notifying affected individuals, offering credit monitoring, and says it does not expect a material business impact.
Medical device firm Boston Scientific says cyberattack has disrupted shipment processes
Boston Scientific says a cyberattack disrupted shipment and operating systems, forcing engagement of an incident response firm with no restoration timeline.
Medical device manufacturer Boston Scientific disclosed a cybersecurity incident discovered Tuesday that impacted access to operating systems and business applications, including processing and shipping customer orders. The company filed documents with the SEC, hired a cybersecurity firm, and told investors full restoration may take weeks. No group has claimed responsibility and it is unclear whether ransomware is involved. The company reported $5.4 billion in net sales in Q2 2026 and produces pacemakers and stents.