Nearly 480,000 impacted by Covenant Health data breach
嗯,用户让我帮忙总结一篇文章的内容,控制在100字以内,而且不需要用“文章内容总结”之类的开头。我得先仔细看看这篇文章讲了什么。 文章主要讲的是去年Covenant Health这个天主教医疗组织遭遇了网络攻击,泄露了47万多人的敏感信息。黑客在5月入侵了他们的系统,窃取了包括社保号、医疗记录等信息。之后他们通知了受害者,并提供了信用监控服务。攻击还影响了几个医院的运营,比如等待时间增加,实验室只能处理纸质订单。最后,这次攻击被Qilin勒索软件团伙所声称,他们去年在全球范围内发起了多次攻击。 现在我要把这些要点浓缩到100字以内。首先提到Covenant Health被黑,泄露人数和数据类型。然后说明攻击的时间和影响,比如医院运营中断。最后提到Qilin团伙及其影响范围。 要注意不要遗漏关键信息,同时保持简洁明了。可能需要调整句子结构,确保信息准确且符合字数限制。 </think> 去年一起网络攻击事件导致Catholic医疗组织Covenant Health泄露47.8万名患者的敏感信息,包括社保号、医疗记录等。黑客于5月入侵其系统,并对多家医院造成运营中断。该事件最终被Qilin勒索软件团伙认领,该团伙去年在全球发起了数百次攻击。 2026-1-2 20:16:29 Author: therecord.media(查看原文) 阅读量:3 收藏

A cyberattack last year exposed the sensitive information of 478,188 people, the Catholic healthcare organization Covenant Health said.

Covenant Health operates three hospitals and multiple rehabilitation centers, assisted living residences, and community-based health and elder care organizations across Maine, Massachusetts, New Hampshire, Pennsylvania, Rhode Island and Vermont. 

In May 2025, hackers breached the organization’s network and stole patients’ names, addresses, dates of birth, medical record numbers, Social Security numbers, health insurance information, and treatment information like diagnoses, dates of treatment, and types of treatment.

Covenant Health began sending breach notification letters to victims on New Year’s Eve. Victims are being offered one year of credit monitoring services. 

The organization said its investigation into the incident finished on December 10 and found that cybercriminals had access to its IT systems from May 18 until about May 26. Federal law enforcement was notified of the attack at the time. 

The cyberattack had a significant impact on two hospitals in Maine — St. Joseph Hospital and St. Mary’s Health System — and one in New Hampshire, which is also called St. Joseph Hospital.

Wait times at St. Mary’s increased and its labs were only able to process paper orders. St. Joseph Hospital in New Hampshire said lab services were only available at the main hospital campus and services could only be provided with a physical order in hand.

The attack was eventually claimed by the Qilin ransomware gang, which previously caused chaos in the U.K. after damaging dozens of hospitals and local clinics in London. 

The group was one of the most destructive ransomware operations in 2025, targeting several U.S. municipalities, Japanese beverage giant Asahi, and one of the largest newspaper chains in the United States. It also launched significant attacks on the governments of Malaysia and Palau

Cisco Talos published a study finding that the gang published the information of about 40 victims per month last year. 

The cybersecurity research firm Comparitech tracked more than 700 Qilin attacks last year, with 118 being confirmed. About half of the attacks targeted the U.S., while France, Canada, South Korea and Spain also had a large proportion of organizations that dealt with Qilin incidents.

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

Recorded Future

No previous article

No new articles

Jonathan Greig

Jonathan Greig

is a Breaking News Reporter at Recorded Future News. Jonathan has worked across the globe as a journalist since 2014. Before moving back to New York City, he worked for news outlets in South Africa, Jordan and Cambodia. He previously covered cybersecurity at ZDNet and TechRepublic.


文章来源: https://therecord.media/covenant-health-breach-qilin
如有侵权请联系:admin#unsafe.sh