The Texas Tech University Health Sciences Center (TTUHSC) confirmed hackers accessed the personal and sensitive health data of over 1.4 million individuals during a September cyberattack.
The cyberattack, which also affected TTUHSC’s El Paso campus, saw attackers steal information including Social Security numbers, financial account information, government-issued ID details, and health information — including medical records numbers, billing data, and diagnosis and treatment information — the medical school said in a notice on a dedicated website.
Read more…
Source: TechCrunch
Related:
- HOLLOWGRAPH: Turning Microsoft 365 Calendars into Covert Command-and-Control Channels
July 20, 2026
The Group-IB Threat Intelligence team has identified HOLLOWGRAPH, a new malware sample that we attribute, with high confidence, to the Cavern backdoor framework. This malware is one component of a larger toolkit, and it uses the Microsoft Graph API through a compromised Microsoft 365 account observed in Israel to communicate with its operators — a technique ...
- Healthcare giant Abbott probes two cyber incidents amid extortion claims
July 20, 2026
Abbott Laboratories, one of the world’s largest healthcare and medical device companies, is investigating two apparently unrelated cyber incidents after confirming unauthorized access to internal systems. While Abbott says there has been no impact on manufacturing, laboratory operations, or patient care, cybercriminal groups ShinyHunters and ShadowByt3$ claim the breaches were far more extensive. Those claims ...
- Hackers breached DHS after alarms were twice ruled ‘false positives’
July 17, 2026
Hackers managed to find their way into the US Department of Homeland Security’s primary information sharing platform, gaining unfettered access to the HSIN network that hosts unclassified information that multiple US agencies and international rely on. The hack allowed the attackers to modify server files, run malicious code and steal credential files while installing backdoors and ...
- Attackers target critical FortiSandbox flaws as CISA issues patch order
July 17, 2026
Fortinet admins have two more reasons to clear their calendars after CISA confirmed a pair of critical FortiSandbox bugs are being actively exploited. The two bugs, tracked as CVE-2026-39808 and CVE-2026-25089, both carry CVSS scores of 9.1 and affect FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS. According to Fortinet, they are OS command injection flaws that allow ...
- Nichirei getting back online after cyberattack hit KFC supplies
July 16, 2026
Nichirei, the food distributor hit by a cyberattack that disrupted supplies to Kentucky Fried Chicken Japan and other outlets, said its systems are getting back online as it takes steps to remedy the disruption. The Tokyo-based provider of frozen food, ice and meat products said in a statement Thursday that it worked with an external cybersecurity specialist to ...
- GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration
July 16, 2026
In February 2026, Kaspersky discovered a set of malicious activities that had been ongoing since late 2025. These activities involved a RAT module written in Go with proxy capabilities, which served as the main stage of the attack. The attack targeted government and diplomatic entities in Southeast Asia and showed a level of sophistication that ...

