The Covenant Well being group has revised to just about 500,000 the variety of people affected by a data breach found final Might.
The healthcare entity initially reported in July that the information of seven,864 individuals had been uncovered, however additional evaluation has revealed a bigger affect.
After finishing “the majority of its information evaluation,” Covenant Well being now says that 478,188 people had been affected.
Covenant Well being is a Catholic healthcare supplier based mostly in Andover, Massachusetts, working hospitals, nursing and rehabilitation facilities, assisted residing residences, and elder care organizations throughout New England and components of Pennsylvania.
Qilin ransomware assault
Covenant Well being realized on Might 26, 2025, that an attacker had breached its techniques eight days earlier, on Might 18, and gained entry to affected person information.
In late June, the Qilin ransomware group claimed the assault, stating that it had stolen 852 GB of information comprising almost 1.35 million recordsdata.

supply: BleepingComputer
The group says the uncovered info might embody names, addresses, dates of delivery, medical document numbers, Social Safety numbers, medical insurance info, and therapy particulars (e.g., diagnoses, dates of therapy, sort of therapy).
In a replica of the discover, Covenant Well being says it engaged third-party forensic specialists to find out what information was affected and what number of people had been impacted.
“That overview is ongoing,” the group stated, with out offering a timeline for ending the investigation and its affect. Covenant Well being stated that it has strengthened the security of its techniques, to forestall comparable incidents sooner or later.
The healthcare entity Covenant Well being is providing affected people 12 months of free identification safety providers to assist detect potential misuse of their info.
Starting December 31, the group began mailing data breach notification letters to sufferers whose info might have been compromised within the Might intrusion.
It is funds season! Over 300 CISOs and security leaders have shared how they’re planning, spending, and prioritizing for the yr forward. This report compiles their insights, permitting readers to benchmark methods, establish rising traits, and evaluate their priorities as they head into 2026.
Find out how high leaders are turning funding into measurable affect.



