Back Lokmattimes Kerala Cyber Attack: Ernakulam Hospital's Patient Data Allegedly Hacked
Digital healthcare systems have improved medical services, but have also increased cyber risks for hospitals. A major cybercrime incident was recently reported in Ernakulam, Kerala, where an international cybercriminal group allegedly infiltrated a private hospital’s computer network and accessed nearly 800 GB of sensitive data. The stolen information reportedly included patients’ medical records, test reports, personal details, administrative documents, and financial transaction-related data. The data was allegedly put up for sale on the dark web, creating a serious privacy threat for thousands of patients whose confidential health information may have been exposed.
A similar alarming incident was reported in Nagpur nearly one-and-a-half to two years ago, where a doctor was accused of illegally accessing important digital information from another doctor’s hospital system. After the COVID-19 pandemic, the healthcare sector rapidly adopted digital platforms, leading to increased storage of patient information online. Hospitals, diagnostic centres, insurance companies, and digital healthcare providers now manage large volumes of sensitive data through electronic medical records, online appointments, telemedicine services, digital prescriptions, and cloud-based systems.
Also Read: Bihar: Dead Lizard Found in Funeral Feast Meal; Over 150 People Hospitalised in Supaul
Healthcare data is considered more sensitive than information from many other sectors because medical records cannot simply be changed once leaked. While details like phone numbers or addresses can be updated, a person’s medical history, surgeries, illnesses, mental health records, and genetic information remain permanent. If such information reaches criminals, it can be misused for insurance fraud, identity theft, financial scams, blackmail, fake loan applications, and targeted cyberattacks. In some cases, stolen medical records are sold online and used for phishing campaigns or other criminal activities.
The increasing number of cyberattacks highlights the urgent need for stronger protection measures in hospitals. Healthcare institutions must implement advanced security systems, including data encryption, multi-factor authentication, regular backups, firewalls, cybersecurity audits, and employee training programs. Staff members should also be educated suspicious emails, unsafe links, and other common cyber threats. Although digital technology has made healthcare faster and more efficient, protecting patients’ confidential information has become a major responsibility for hospitals and healthcare organisations.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
