Back to Industry

Industry - Data Breach

moderateAnti-PrivacyData Breach

Executive Summary

UK healthcare billing software maker Craneware disclosed a cyberattack in which hackers stole a "significant volume" of data, including employee records, customer data, and partner information from its systems. The breach is particularly concerning because Craneware's software is used by thousands of US hospitals, clinics, and pharmacies, and the company handles large amounts of medical records and patient data on their behalf, including access to 147 million patient records acquired through ...

What Happened

UK-based healthcare billing software maker Craneware disclosed a cyberattack on July 20, 2026, in which hackers extracted a significant volume of data from its systems including employee records, customer data, and partner information. The company stated the attackers appear to have been removed from its systems, though the investigation remains ongoing. Craneware's software is used by thousands of US clinics, hospitals, and pharmacies to manage billing processes, and the company handles large amounts of medical records and patient data on behalf of these customers, including access to 147 million patient records acquired through its 2021 purchase of pharmacy software maker Sentry.

Who Is Affected

Affected parties include Craneware employees whose personal records were stolen, customers using the billing software (thousands of US healthcare providers), and potentially patients whose medical and health-related data was accessible through Craneware's systems. While the company confirmed that employee, customer, and partner data were exfiltrated, the exact scope of patient data compromise has not been disclosed. The breach follows a concerning pattern of attacks on healthcare technology suppliers that provide services to the broader US healthcare sector.

Why It Matters

This breach highlights the concentrated risk posed by third-party healthcare technology vendors that process medical data for numerous providers. When hackers compromise a single software company serving thousands of hospitals and clinics, they can potentially access vast quantities of sensitive patient information across multiple healthcare organizations simultaneously. The incident is part of an escalating trend of cyberattacks targeting healthcare billing and revenue management companies, including the 2024 Change Healthcare breach that affected at least 192 million Americans, demonstrating how supply chain vulnerabilities create systemic privacy risks across the healthcare sector.

What You Should Do

If you received medical services at a US hospital, clinic, or pharmacy that uses Craneware billing software, monitor your accounts and credit reports for unauthorized activity or signs of identity theft. Watch for official breach notification letters from your healthcare providers, which they are legally required to send if your data was compromised. Consider placing a fraud alert or credit freeze with major credit bureaus as a precautionary measure. Contact your healthcare provider directly to ask whether they use Craneware systems and whether your records may have been affected by this breach.

Summary generated from verified sources and reviewed before publication. How we summarize.

UK healthcare billing software maker Craneware disclosed a cyberattack in which... - Industry | PrivacyWire