U.S. Health Sector Hit by Three Ransomware Cases
Change Healthcare, OSF Healthcare and Unlimited Technology Systems surfaced in recent ransomware and breach reports tied to U.S. health care.
Change Healthcare kept feeling the effects for weeks after a ransomware attack that disrupted patient care and slowed billing for many U.S. health providers, while other recent cases point to sustained pressure on the sector. Those include OSF Healthcare, which reached a settlement with HHS over HIPAA violations, and provider Unlimited Technology Systems, which reported a breach affecting data from 3.8 million patients.
Change Healthcare kept feeling the effects for weeks after a ransomware attack that disrupted patient care and slowed billing for many health providers in the United States, while other recent cases point to sustained pressure on the sector. Those include OSF Healthcare, which reached a settlement with HHS over HIPAA violations, and provider Unlimited Technology Systems, which reported a breach affecting data from 3.8 million patients.
Change Healthcare and the operational fallout
The attack on Change Healthcare disrupted patient care for weeks and left many providers unable to bill normally. According to Cybersecurity Dive, the company processed close to half of all medical claims in the country, which helps explain the scale of the operational impact.
That case remains one of the clearest examples of the pressure ransomware puts on the U.S. health care and payments chain. When an intermediary of that size goes offline, the problem does not stay inside the victim’s own infrastructure. The damage ripples into billing flows and into the continuity of services that depend on that processing.
Other recent cases in health care
Becker's Hospital Review reported that a ransomware breach at health tech provider Unlimited Technology Systems was notified to HHS and exposed data from 3.8 million patients. The case broadens the focus beyond hospitals and shows the risk facing software and service providers that support clinical and administrative operations.
In a separate matter, HC Innovation Group reported that OSF Healthcare settled with the HHS Office for Civil Rights over a HIPAA violations investigation linked to ransomware. The case adds to a growing list of incidents in health care that combine operational disruption, data exposure and regulatory consequences.
Recent DragonForce activity
The pressure is not limited to the biggest names. Security Arsenal reported that DragonForce's dark web leak site posted four new U.S. victims within a 24-hour window, including a health care target identified as Primary Eye Care.
That batch of postings reinforces that the ransomware ecosystem continues to target U.S. organizations of different sizes, with particular interest in health care and in providers that perform critical functions within the care delivery chain.
Sources
- OSF Healthcare Settles with HHS Over HIPAA Violationshcinnovationgroup.com· HC Innovation Group
- Ransomware breach at health IT vendor tops 3.8 million patientsbeckershospitalreview.com· Becker's Hospital ReviewUnverified URL
- Experts say healthcare faces cybersecurity crisis: 'These are patient ...cybersecuritydive.com· Cybersecurity Dive
- DRAGONFORCE Ransomware Gang: 4 US Victims in Single Day Leak Batchsecurityarsenal.com· Security Arsenal



