Healthcare IT Platform CareCloud Probing Potential Data Breach
2026-03-31T01:24:07Z•9e05282cedae740ebd5ec5b6517adc53314ae87b9948012e4f2db9d6ba9cb22b
APT (state‑sponsored)CareCloudCitrix NetScalerDarkSwordF5 BIG-IPHuskeysIran-linked actorsKash Patel email compromiseLLM access controlPyPI malwareRussian APTShinyHuntersTeamPCPTelnyxcloud intrusiondata breachedge securityelectronic health records (EHR)hospital/healthcare targetingiOS exploitremote code executionrewardsupply chainzero-day exploitation
What happened
Multiple high-impact security developments reported: the European Commission suffered a major cloud intrusion with ShinyHunters claiming ~350GB of stolen data; CareCloud disclosed a cybersecurity incident impacting an EHR environment; exploited critical vulnerabilities in enterprise appliances (Citrix NetScaler memory-leak flaw and an F5 BIG‑IP bug upgraded from DoS to critical RCE) are being exploited in the wild; Telnyx was targeted via a TeamPCP supply‑chain attack involving malicious PyPI SDK uploads affecting Windows/macOS/Linux; Russian APT “Star Blizzard” has adopted the DarkSword iOS‑x
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 9e05282cedae740ebd5ec5b6517adc53314ae87b9948012e4f2db9d6ba9cb22b
- Enrichment time
- 2026-03-31T01:24:07Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.