Key Takeaways
- In 2023, the healthcare sector experienced 540 data breaches reported to the U.S. Department of Health and Human Services (HHS), marking a 198% increase from 2022.
- Healthcare data breaches in the first half of 2023 affected 112.3 million people, more than double the 51.5 million in the same period of 2022.
- From 2009 to 2023, HHS reported over 5,903 healthcare breaches affecting more than 333 million individuals.
- Average cost of a healthcare data breach in 2023 was $10.93 million, the highest of any industry.
- Ransomware attacks cost the global healthcare sector $20.4 billion from 2016-2021.
- In 2023, UnitedHealth paid $22 million ransom to hackers after Change Healthcare attack.
- Ransomware accounted for 67% of healthcare breaches in 2023.
- Phishing was involved in 16% of healthcare data breaches according to Verizon DBIR 2023.
- Supply chain attacks made up 20% of healthcare incidents in 2023.
- Change Healthcare breach affected one-third of US healthcare payments.
- 82% of healthcare executives reported being hit by cyber attacks in 2023.
- Small practices (<100 beds) saw 2,200% rise in breaches from 2019-2023.
- Healthcare breaches exposed 112M patient records in H1 2023 alone.
- Ransomware caused 2-4 weeks average downtime in hospitals 2023.
- 54% of breached healthcare orgs faced patient care delays.
Healthcare cyber attacks surged globally last year, causing massive breaches and patient care disruptions.
Affected Entities
Affected Entities Interpretation
Breach Impacts
Breach Impacts Interpretation
Financial Impact
Financial Impact Interpretation
Incident Frequency
Incident Frequency Interpretation
Types of Attacks
Types of Attacks Interpretation
Sources & References
- Reference 1HHShhs.govVisit source
- Reference 2HIPAAJOURNALhipaajournal.comVisit source
- Reference 3EMSISOFTemsisoft.comVisit source
- Reference 4GOVgov.ukVisit source
- Reference 5CYBERcyber.gov.auVisit source
- Reference 6SOPHOSsophos.comVisit source
- Reference 7BECKERSHOSPITALREVIEWbeckershospitalreview.comVisit source
- Reference 8ENISAenisa.europa.euVisit source
- Reference 9VERIZONverizon.comVisit source
- Reference 10CHIMECENTRALchimecentral.orgVisit source
- Reference 11PUBLICSAFETYpublicsafety.gc.caVisit source
- Reference 12CERT-INcert-in.org.inVisit source
- Reference 13RECORDEDFUTURErecordedfuture.comVisit source
- Reference 14IPAipa.go.jpVisit source
- Reference 15STATEOFSECURITYstateofsecurity.comVisit source
- Reference 16BSIbsi.bund.deVisit source
- Reference 17CNILcnil.frVisit source
- Reference 18CLUSITclusit.itVisit source
- Reference 19INCIBEincibe.esVisit source
- Reference 20NCSCncsc.nlVisit source
- Reference 21MSBmsb.seVisit source
- Reference 22NSMnsm.noVisit source
- Reference 23CFCScfcs.dkVisit source
- Reference 24TIETOTURVAtietoturva.fiVisit source
- Reference 25GOVgov.plVisit source
- Reference 26IBMibm.comVisit source
- Reference 27WSJwsj.comVisit source
- Reference 28PONEMONponemon.orgVisit source
- Reference 29GOVgov.brVisit source
- Reference 30SAPSsaps.gov.zaVisit source
- Reference 31AUTORITEITPERSOONSGEGEVENSautoriteitpersoonsgegevens.nlVisit source
- Reference 32DSBdsb.noVisit source
- Reference 33KYLMAPIIRIkylmapiiri.fiVisit source
- Reference 34CLOUDFLAREcloudflare.comVisit source
- Reference 35AKAMAIakamai.comVisit source
- Reference 36OWASPowasp.orgVisit source
- Reference 37PTSECURITYptsecurity.comVisit source
- Reference 38HIMSShimss.orgVisit source
- Reference 39CHECKPOINTcheckpoint.comVisit source
- Reference 40MANDIANTmandiant.comVisit source
- Reference 41MICROSOFTmicrosoft.comVisit source
- Reference 42CISAcisa.govVisit source
- Reference 43CROWDSTRIKEcrowdstrike.comVisit source
- Reference 44SENTINELONEsentinelone.comVisit source
- Reference 45ZDNETzdnet.comVisit source
- Reference 46IC3ic3.govVisit source
- Reference 47NISCnisc.go.jpVisit source
- Reference 48ITWEBitweb.co.zaVisit source
- Reference 49VALTIONEUVOSTOvaltioneuvosto.fiVisit source
- Reference 50REUTERSreuters.comVisit source
- Reference 51JAMANETWORKjamanetwork.comVisit source
- Reference 52ENGLANDengland.nhs.ukVisit source
- Reference 53OAICoaic.gov.auVisit source
- Reference 54TIMESOFINDIAtimesofindia.indiatimes.comVisit source
- Reference 55G1g1.globo.comVisit source
- Reference 56ASAHIasahi.comVisit source
- Reference 57NEWS24news24.comVisit source
- Reference 58DWdw.comVisit source
- Reference 59LEMONDElemonde.frVisit source
- Reference 60REPUBBLICArepubblica.itVisit source
- Reference 61ELPAISelpais.comVisit source
- Reference 62NOSnos.nlVisit source
- Reference 63SVTsvt.seVisit source






