U.S. Health Sector Hit by Three Ransomware Cases
Change Healthcare, OSF Healthcare and Unlimited Technology Systems surfaced in recent ransomware and breach reports tied to U.S. health care.
Change Healthcare kept feeling the effects for weeks after a ransomware attack that disrupted patient care and slowed billing for many U.S. health providers, while other recent cases point to sustained pressure on the sector. Those include OSF Healthcare, which reached a settlement with HHS over HIPAA violations, and provider Unlimited Technology Systems, which reported a breach affecting data from 3.8 million patients.
Change Healthcare kept feeling the effects of a ransomware attack for weeks, disrupting patient care and slowing billing for many health providers across the United States. Other recent cases show the sector remains under pressure, including OSF Healthcare, which reached a settlement with HHS over HIPAA violations, and Unlimited Technology Systems, which reported a breach affecting 3.8 million patients.
What happened at Change Healthcare?
The attack on Change Healthcare disrupted patient care for weeks and left many providers unable to bill normally. According to Cybersecurity Dive, the company processed about half of all medical claims in the country, which helps explain the scale of the operational impact.
That case remains one of the clearest examples of the pressure ransomware places on the U.S. health care and payments chain. When an intermediary of that size goes offline, the problem does not stop at the victim’s internal systems. The damage spreads to billing workflows and to the continuity of services that depend on that processing.
What other recent health care cases were reported?
Becker's Hospital Review reported that a ransomware breach at health tech provider Unlimited Technology Systems was notified to HHS and affected data from 3.8 million patients. The case broadens the focus beyond hospitals and highlights the risk facing software and services providers that support clinical and administrative operations.
At the same time, HC Innovation Group reported that OSF Healthcare settled with the HHS Office for Civil Rights in an investigation into HIPAA violations linked to ransomware. The case adds to a series of incidents in health care that combine operational disruption, data exposure and regulatory fallout.
What did DragonForce's recent activity show?
The pressure is not limited to the biggest names. Security Arsenal reported that DragonForce's dark web leak site published four new U.S. victims in a 24-hour window, including a health care target identified as Primary Eye Care.
That set of posts reinforces that the ransomware ecosystem continues to target organizations of different sizes in the United States, with particular interest in health care and in providers that perform critical functions in the care delivery chain.
Sources
- OSF Healthcare Settles with HHS Over HIPAA Violationshcinnovationgroup.com· HC Innovation Group
- Experts say healthcare faces cybersecurity crisis: 'These are patient ...cybersecuritydive.com· Cybersecurity Dive
- DRAGONFORCE Ransomware Gang: 4 US Victims in Single Day Leak Batchsecurityarsenal.com· Security Arsenal
- Ransomware breach at health IT vendor tops 3.8 million patientsbeckershospitalreview.com· Becker's Hospital ReviewUnverified URL



