Veradigm says vendor cyber incident exposes some patients’ personal data, including Social Security numbers
MDRX•Vendor cyber incident exposed limited patient data
- Veradigm flagged a third-party vendor cybersecurity incident that exposed patient personal data tied to a small number of customers.
- Stolen vendor credentials were used to access a Veradigm API, enabling downloads that in some cases included Social Security numbers.
- No clinical or medical data was involved; access was limited to the API, not Veradigm’s broader network, servers, databases, or systems.
- Operations were not disrupted; the company has not yet quantified potential liabilities.
- Veradigm does not expect the incident to have a material impact on business, operations, financial condition, or results.




