Cyberattack on External Billing Service Affects Multiple German Hospitals

Cyberattack on External Billing Service Affects Multiple German Hospitals

First seen 22 May 2026, 22:25 UTC www.uniklinik-freiburg.dewww.uniklinik-duesseldorf.dewww.wochenblatt-reporter.de 76% similarity 57.8

Article Content

Browse articles
ThreatCluster

A cyberattack on external billing service providers has compromised patient data across several German hospitals, including the Universitätsklinikum Freiburg, Universitätsklinikum Düsseldorf, and Universitätsklinikum des Saarlandes. The attack, which occurred in mid-April 2026, primarily affected patients with private insurance and self-payers. The Universitätsklinikum Freiburg reported that data from approximately 54,000 patients was stolen, including personal and billing information. The Universitätsklinikum Düsseldorf confirmed over 3,000 affected cases, with 162 potentially involving health data. The Universitätsklinikum des Saarlandes noted that 1,266 patients' data was compromised, primarily consisting of basic personal information. All hospitals have assured that clinical systems and patient care were not impacted. The hospitals are working with authorities and the affected service providers to assess the situation and inform patients. The data breach has raised significant concerns regarding the security of sensitive health information.

Key Points: • Over 54,000 patients' data compromised at Universitätsklinikum Freiburg. • Universitätsklinikum Düsseldorf reports over 3,000 affected cases, including health data. • Universitätsklinikum des Saarlandes confirms 1,266 patients' data stolen, mostly personal information.

ThreatCluster AI

Timeline

2026-04-14
Cyberattack on external billing service reported
A cyberattack targeted an external billing service provider, affecting multiple hospitals across Germany.
Article 2
2026-04-16
Authorities notified of the breach
The responsible data protection authority and the Federal Office for Information Security were informed about the incident.
Article 1
2026-05-18
Details of data breach confirmed
The extent and nature of the stolen data were confirmed by the external service provider to the affected hospitals.
Article 1
2026-05-22
Public notification of affected patients
Hospitals began informing affected patients about the data breach and its implications.
Article 3

Community

Browse all →