Biometrics, diagnoses, and bank details exposed in major healthcare breach

2026-05-19T20:51:54Z86c350c7fb269e4eccdd11f0577eb066c0e4aa758008d0446d8402adc0fe7ee0
ai-scamsbiometricsbrowser-securitydata-breachdeepfakesedgehealthcareiot-vulnerabilitiesmalwarepayment-dataplaintext-passwordsransomwareshinyhunterssupply-chain-attackthird-party-compromise

What happened

Malwarebytes Labs reported multiple high-impact incidents and trends: a major NYC Health + Hospitals breach via a third‑party vendor exposed sensitive PII (including biometrics, medical diagnoses, and bank details) for ~1.8M people; JDownloader’s website served malware via compromised installer downloads (supply‑chain attack); and ShinyHunters escalated attacks against Canvas with login‑portal defacements. Other notable issues include Microsoft Edge loading saved passwords into plaintext memory (now being changed), Mac users targeted by ClickFix social‑engineering malware, widespread AI‑based/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
86c350c7fb269e4eccdd11f0577eb066c0e4aa758008d0446d8402adc0fe7ee0
Enrichment time
2026-05-19T20:51:54Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.