"By targeting one entity, they’re gaining access to multiple healthcare providers and their data."
Rebecca Moody, Head of Data Research at Comparitech
Following the disclosure late last month that a 2025 network breach of healthcare billing company Medical Computer Business Services (MCBS) exposed the sensitive information of more than 1.2 million people, Rebecca Moody, Head of Data Research at Comparitech, said:
This is another prime example of why third-party healthcare companies, like medical billing providers, have become a prime target for ransomware groups. By targeting one entity, they’re gaining access to multiple healthcare providers and their data. Our recent H1 healthcare ransomware report found a 35 percent uptick in attacks on these types of companies (those that specialize within the healthcare sector but don’t provide direct care).
This breach becomes the second-largest on a third-party healthcare business following a ransomware attack in the last 18 months.
Editor’s note: The context for this submission is “harvest now, decrypt later.” Learn more about HNDL at PQC+IQT, which is coming to New York City October 25-26.



