Canada’s largest pediatric health center, the Hospital for Sick Children, recently experienced a cybersecurity incident that compromised the personal information of current and former employees. The hospital, which previously suffered a ransomware attack in 2022, issued a statement indicating that the latest breach is believed to be linked to a third-party software application.
The cyberattack temporarily disabled the hospital’s careers website, prompting an investigation. While SickKids did not disclose when the attack occurred, they stated that investigators suspect hackers stole information related to employees and job applicants, including those associated with the SickKids Foundation. However, the notice did not specify what types of employee data were taken, and it confirmed that clinical systems and patient information were not affected.
Individuals potentially impacted by the breach have been notified and offered two years of credit monitoring services. This incident follows a troubling trend in the healthcare sector, as SickKids is among several organizations reporting breaches this week, including Baylor Genetics and CareCloud.
In 2022, SickKids was targeted by ransomware hackers who disrupted the hospital’s systems just before the Christmas holiday, leading to significant operational challenges. The group responsible for that attack later apologized and provided a decryptor for free, claiming to have terminated the affiliate involved in the incident.
For more details, see the full report by The Record.
Follow Cyber Warriors Middle East for further global cybersecurity developments.



