Healthcare IT Platform CareCloud Probing Potential Data Breach

2026-03-31T01:24:07Z9e05282cedae740ebd5ec5b6517adc53314ae87b9948012e4f2db9d6ba9cb22b
APT (state‑sponsored)CareCloudCitrix NetScalerDarkSwordF5 BIG-IPHuskeysIran-linked actorsKash Patel email compromiseLLM access controlPyPI malwareRussian APTShinyHuntersTeamPCPTelnyxcloud intrusiondata breachedge securityelectronic health records (EHR)hospital/healthcare targetingiOS exploitremote code executionrewardsupply chainzero-day exploitation

What happened

Multiple high-impact security developments reported: the European Commission suffered a major cloud intrusion with ShinyHunters claiming ~350GB of stolen data; CareCloud disclosed a cybersecurity incident impacting an EHR environment; exploited critical vulnerabilities in enterprise appliances (Citrix NetScaler memory-leak flaw and an F5 BIG‑IP bug upgraded from DoS to critical RCE) are being exploited in the wild; Telnyx was targeted via a TeamPCP supply‑chain attack involving malicious PyPI SDK uploads affecting Windows/macOS/Linux; Russian APT “Star Blizzard” has adopted the DarkSword iOS‑x

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
9e05282cedae740ebd5ec5b6517adc53314ae87b9948012e4f2db9d6ba9cb22b
Enrichment time
2026-03-31T01:24:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Healthcare IT Platform CareCloud Probing Potential Data Breach · Baitaphish