Hackers leak medical reports after huge breach impacts 1.2 million patient records
Date:
Tue, 14 Oct 2025 15:14:00 +0000
Description:
SimonMed Imaging suffered at the hands of Medusa, but has since been removed from Medusa's data leak site.
FULL STORY ======================================================================SimonMed
Imaging lost sensitive data on 1.2 million people in a ransomware attack Medusa claimed responsibility, demanding $1 million to delete 212GB of stolen patient data Victims are offered free identity theft and credit monitoring
SimonMed Imaging, a large US outpatient medical imaging and radiology provider, suffered a cyberattack and lost sensitive data on more than a million people.
Earlier this week, the company filed a new report with the Office of the
Maine Attorney General, in which it also shared a sample of the data breach notification letter its been sending out to affected customers. In it, it
said that in late January, one of its vendors notified it of an ongoing security incident.
The following day, SimonMed discovered suspicious activity on its own
network, and tried to thwart the attack by resetting password, setting up two-factor authentication (2FA), implementing endpoint detection and response monitoring, and removing all third-party vendor direct access to its systems. Concrete action
But, by the time this was done, it was already too late. Between January 21 and February 5, cybercriminals exfiltrated sensitive data on 1.2 million people, SimonMed said. It only said the criminals stole peoples names and other data elements.
At the same time, ransomware operators Medusa claimed responsibility for the attack, stated they nabbed 212GB of various data, including ID scans, spreadsheets with patient details, payment details, account balances, medical reports, and even raw scans, BleepingComputer reported.
The publication also said that the attackers demanded $1 million to delete
the data, and $10,000 to extend the deadline for publishing by one day.
Now, the company has been pulled from the data leak site, which would suggest that SimonMed Imaging paid the ransom demand. This has not yet been confirmed (nor denied), and it doesnt necessarily mean the organization paid the whole sum.
Relevant authorities were notified of the incident, and third-party cybersecurity experts were brought in to assess the damage and help with the post-mortem. At the same time, the victims are being offered free identity theft and credit monitoring services through Experian.
Via BleepingComputer
Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the
Follow button!
And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too. You might also like Medusa ransomware is able to disable anti-malware tools, so
be on your guard Take a look at our guide to the best authenticator app We've rounded up the best password managers
======================================================================
Link to news story:
https://www.techradar.com/pro/security/hackers-leak-medical-reports-after-huge -breach-impacts-1-2-million-patient-records
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)