Millions possibly affected by data breach at dermatology giant QualDerm


Dermatology management services giant QualDerm suffered a cyberattack in late 2025 which saw it lose sensitive personal and healthcare data on more than three million people.

The company is now notifying affected individuals by mail, noting in a breach notification letter that between December 23 and 24, 2025, a threat actor managed to access “a limited number of systems” and pull “certain information” stored within. That data includes a combination of people’s names, email addresses, dates of birth, medical record numbers, diagnosis and treatment information.

Read more…
Source: TechRadar News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • ‘RockYou2024’: Nearly 10 billion passwords leaked online

    July 8, 2024

    On a popular hacking form, a user has leaked a file that contains 9,948,575,739 unique plaintext passwords. The list appears to be a compilation of passwords that were obtained during several old and more recent data breaches. The list is referred to as RockYou2024 because of its filename, rockyou.txt. To cybercriminals the list has some value ...

  • Japan: MSDF chief may quit over widespread mishandling of secret info

    July 6, 2024

    Several Maritime Self-Defense Force vessels reportedly allowed unvetted personnel to handle top secret information related to national security, with the MSDF’s top uniformed officer signaling his intention to resign over the latest breach. Ryo Sakai, the MSDF’s chief of staff since 2022, is expected to quit his post and the Defense Ministry is considering disciplinary actions ...

  • OpenAI breach is a reminder that AI companies are treasure troves for hackers

    July 5, 2024

    There’s no need to worry that your secret ChatGPT conversations were obtained in a recently reported breach of OpenAI’s systems. The hack itself, while troubling, appears to have been superficial — but it’s reminder that AI companies have in short order made themselves into one of the juiciest targets out there for hackers. The New York ...

  • Ticketmaster hackers release stolen ticket barcodes for Taylor Swift Eras Tour

    July 5, 2024

    The cybercriminals who claimed responsibility for the Ticketmaster data breach say they’ve stolen 440,000 tickets for Taylor Swift’s Eras Tour. As proof, an entity using the handle Sp1d3rHunters, a merger of Sp1d3r and ShinyHunters who are both aliases associated with the breach, leaked 170k barcodes for free for Taylor Swift’s ERAS Tour. In a post on ...

  • India’s Airtel dismisses data breach reports amid customer concerns

    July 5, 2024

    Airtel, India’s second-largest telecom operator, on Friday denied any breach of its systems following reports of an alleged security lapse that has caused concern among its customers. The telecom group, which also sells productivity and security solutions to businesses, said it had conducted a “thorough investigation” and found that there has been no breach whatsoever into ...

  • Yet another top US healthcare service provider has been hacked, with patient data exposed

    July 4, 2024

    Following the likes of ChangeHealthcare, Kaiser, Cencora, and several others during the past few months, another major US healthcare service has reported suffering a cyberattack that resulted in the theft of sensitive patient data. This latest victim is HealthEquity, which was on the receiving end of an apparent supply chain attack. In an 8-K form, filed ...