Established 2026Monday, 20 July 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageThreat Intel Desk
Threat Intel

Software provider to more than 2,000 US hospitals says hackers stole employee and customer data

UK-headquartered hospital software vendor Craneware disclosed unauthorized access to customer and employee data, raising questions about cross-jurisdictional breach obligations for EU-listed healthcare suppliers.

Summary written by editorial AI · Source link below

Filed by The Record1 min readRead at source ↗

Craneware, which is headquartered in Edinburgh and listed on London's AIM market, told investors it detected unauthorized access to a “subset” of its data environment and has since brought in outside forensic investigators.

Editorial Analysis

Framed for the CISO & Security Leaders desk

Why it matters

Edinburgh-based, AIM-listed Craneware serving 2,000+ US hospitals suffered a breach — a reminder that healthcare supply-chain vendors with EU headquarters face dual regulatory exposure under GDPR and potential NIS2 essential-entity rules.

What to do

Review third-party risk assessments for any healthcare software vendors in your supply chain and confirm breach-notification clauses are contractually current.

Board brief

A London-listed healthcare software vendor disclosed a breach affecting hospital customer data, spotlighting supply-chain risk in regulated sectors.

Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.

Continue at the source
Read the full report at The Record

External link — opens at The Record in a new tab.

§
Continue with

More from the Threat Intel Desk