MCBS Data Breach Exposes 1.26 Million Patients' Information
Article Content
- •MCBS breach affects 1.26 million individuals, with sensitive data exposed.
- •The PEAR ransomware group claimed responsibility for the attack.
- •Healthcare providers must assess their notification obligations under HIPAA.
Medical Computer Business Services (MCBS) disclosed a network breach affecting 1.26 million individuals, with the incident originating between September 22 and 26, 2025. Attackers gained unauthorized access to sensitive patient and billing information, including personal identifiers and financial data. The breach was reported to the U.S. Department of Health and Human Services, and MCBS confirmed the exposure of data from multiple healthcare providers. The PEAR ransomware group claimed responsibility, alleging they exfiltrated 3.3 terabytes of data, including human resources and operational details. MCBS has advised affected individuals to monitor their credit files and consider placing fraud alerts. The investigation into the breach concluded on May 28, 2026, raising concerns about the delay in public disclosure. The breach highlights vulnerabilities in medical billing systems, which are often less scrutinized than clinical systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Pear and C&C MD PC in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Unauthenticated Path Traversal Vulnerability in WordPress On September 22, 2026, WordPress released version 7.1.2 to address a critical unauthenticated path traversal vulnerability tracked as CVE-2026-87902. This flaw allows unauthenticated attackers to include local PHP files from outside the active theme directories, potentially leading to remote code execution under…
Ransomware Data Theft Increases 275% Amid Falling Payments The Zscaler ThreatLabz 2026 Ransomware Report reveals a staggering 275.8% increase in data theft by the top ten ransomware groups, escalating from 123.8 terabytes to 896.2 terabytes year-over-year. Despite this surge, ransom payments have decreased by 15.8% to $327.8 million, indicating a shift in strategy where…