Medical records of Scottish NHS patients found on dark web following data breach by hackers

Published:

spot_img

NHS Patients’ Private Medical Records Exposed Online: Cyber Attack on NHS Dumfries and Galloway

The private medical records of NHS patients have been compromised, with cyber criminals leaking sensitive information online. A hacking group known as INC Ransom stole a massive 3TB worth of data from NHS Dumfries and Galloway, equivalent to 43 million emails. The group demanded a ransom to keep the information private, but now thousands more records could be at risk of being published.

The Sunday Mail was able to access documents released by the hackers on the dark web, revealing personal details of six patients, including a disabled 10-year-old and an 81-year-old man. The leaked information includes patients’ names, dates of birth, unique numeric identifiers, home addresses, and even personal email addresses. Additionally, the documents contain intimate medical histories, test results, and private disclosures made to doctors.

NHS Dumfries and Galloway confirmed that the six affected patients have been notified, but the extent of the breach remains unclear. Experts warn that the stolen data could lead to identity fraud, phishing attacks, or blackmail. The Information Commissioner’s Office and Police Scotland are investigating the incident, while calls have been made for Health Secretary Neil Gray to address the breach and prevent similar attacks in the future.

The breach highlights the vulnerability of sensitive medical information and the potential risks patients face when their data is compromised. As the investigation continues, the focus remains on protecting patient privacy and preventing further breaches in the healthcare system.

spot_img

Related articles

Recent articles

Flaw in OpenAI, Anthropic, and Google APIs Allows Weaker AI Models to Decode Stronger Models’ Reasoning

A newly disclosed flaw in the APIs of OpenAI, Anthropic, and Google has raised significant security concerns, allowing researchers to recover internal reasoning and...

Cyberattacks Target North Carolina Ports and Ryde, Exposing Millions of Records

In a week marked by significant cyber incidents, the cybersecurity landscape has seen notable attacks targeting critical infrastructure and major companies. The latest Threat...

Active Exploitation of High-Severity Vulnerability CVE-2026-20349 in Cisco ASA and FTD Software

Number: AL26-018Date: August 13, 2026 Active Exploitation of High-Severity Vulnerability CVE-2026-20349 in Cisco ASA and FTD Software The Canadian Centre for Cyber Security (Cyber Centre) has...

Emirates SkyCargo Transports UAE’s First AI-Enabled Satellite Altair-1 to Los Angeles Ahead of October Launch

Emirates SkyCargo has successfully transported Altair-1, the UAE’s first commercial AI-enabled earth observation satellite, from Dubai to Los Angeles. This significant milestone, part of...