1 article with this tag
In August 2026, MyDr sp. z o.o., whose electronic medical records software is used by more than 12,000 healthcare facilities in Poland, disclosed that an external criminal act let a third party copy the contents of a database stored in its cloud. The data is mainly historical, from before April 12, 2024, and Poland's Ministry of Digital Affairs said up to 18.8 million people and over 12,000 facilities may be affected. According to the company, the items include name, address, contact details, PESEL (national identification number), health data, social insurance information and employer details, though not every item applies to every patient. The cause and the route of entry have not been disclosed. The government lets people check whether their PESEL is involved at bezpiecznedane.gov.pl and urges everyone to reserve their PESEL (zastrzeżenie PESEL). This site's take: when one software vendor holds patient data for thousands of facilities, a single breach reaches all of them, and this time what was copied was a backup more than two years old. Affected people should check, reserve their PESEL and prepare for threats that mention their health; operators should confirm that old backups are protected as well as production.