Hospital System Flaws Could Leak Patient Data, CISA Says

Agency Warns Vertikal Systems Vulnerabilities Could Help Hackers Access Data
U.S. federal authorities are warning about vulnerabilities in hospital information management systems from Romanian firm Vertikal Systems that could allow hackers to obtain and disclose patient data. The affected systems are used mostly by smaller hospitals and clinics outside the United States.
Health-ISAC pulled quote:
“The vulnerabilities impacting the Vertikal healthcare information management products may enable hackers to access sensitive data from customer instances,” said Phil Englert, vice president of medical device security at the Health Information Sharing and Analysis Center (Health-ISAC).
“This may result in delays in diagnosis, treatment, or exposure of patient information,” he said.
Englert also recommends Vertikal users take action to ensure the vulnerabilities potentially affecting their systems are indeed patched. “Vertikal has fixes available and all customers are encouraged to contact Vertikal support to obtain and apply the updates as quickly as possible,” he said.
Read the article in Healthcare Information Security. Click Here
- Related Resources & News
- Threat Actor Playbook: Conversational Social Engineering in Care Settings
- The Human Risk Layer of AI
- Cybersecurity in the Lab
- Operation Vital Signs: First-of-its-kind exercise stress tests health sector cyber resilience
- What’s in America’s Code?
- Introducing AI Agents to Your Identity Fabric
- Cyberattacks on Healthcare Sector Jumped 14% in First Half of 2026
- What do cybersecurity leaders want in staff? These 3 skills beat certifications and experience
- Continuous attack surface monitoring and sophisticated social engineering assessment
- Hospital Networks are Becoming Targets in Cyberwarfare, and They’re Unequipped to Deal With It