You are connecting from Lake Geneva Public Library, please login or register to take advantage of your institution's Ground News Plan.
Published 2 days ago • loading... • Updated 16 hours ago
Healthcare Technology Firm Craneware Is Hit by Cyber Attack
The company said most of the exposed information appears to be non-sensitive or already public, and services were not disrupted.
On Monday, July 20, 2026, Edinburgh-based healthcare software maker Craneware reported a cyberattack in which hackers exfiltrated a "significant volume" of employee, customer, and partner data from its systems.
Through its cloud platform, Trisus, Craneware provides accounting and billing software to roughly 2,000 hospitals and 10,000 clinics and pharmacies across the United States, making it a prime target for data theft.
The incident has been contained without disrupting customer services or operations, according to Craneware, which notified the Information Commissioner's Office and the Federal Bureau of Investigations of the breach.
Although the investigation is ongoing, Craneware noted a "percentage" of records were taken, with initial assessments suggesting much of the exfiltrated data is non-sensitive or already public regulatory information.
Reflecting broader industry vulnerabilities, this breach follows recent health tech cyberattacks at Episource and TriZetto, as hackers increasingly target firms holding sensitive patient medical records and billing data.