www.swr.de Massive Cyberattack Exposes Data of Tens of Thousands from Multiple Hospitals
Article Content
- •Over 54,000 patients from Freiburg and 30,000 from Cologne affected by data theft.
- •Sensitive patient information including names, addresses, and billing details compromised.
- •Attack targeted an external service provider, not the hospitals' internal systems.
A cyberattack on an external service provider has compromised the data of tens of thousands of patients across several university hospitals in Baden-Württemberg, Germany. The attack, which occurred in mid-April 2026, primarily affected private patients, with the Unimed service provider being the target. Hospitals including Freiburg, Heidelberg, Tübingen, and Ulm reported significant data theft, including names, addresses, and billing information. The University Hospital of Freiburg alone confirmed that data from approximately 54,000 patients was stolen, with sensitive financial information compromised in some cases. The University Hospital of Cologne also reported around 30,000 affected patients, with similar types of data stolen. All affected hospitals have ceased operations with the service provider and reported the incident to data protection authorities. The full extent of the breach is still being assessed.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Uniklinik Freiburg in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…