MyDr confirms cyberattack: Up to 19 million Poles' data may be compromised
Translated from Polish, summarized and contextualized by DistantNews.
At a glance
- MyDr, a platform belonging to the ZnanyLekarz group, has confirmed a cyberattack that may have exposed the data of up to 19 million Poles.
- The stolen database, exceeding 2 TB, potentially includes sensitive information such as PESEL numbers, contact details, and medical records from 2024 and earlier.
- The incident highlights systemic cybersecurity issues in Poland's healthcare sector, with patients often unaware of which systems their data is processed through.
MyDr, a major Polish provider of Electronic Medical Records and part of the ZnanyLekarz group, has confirmed a significant cyberattack. The breach potentially exposed the personal and medical data of up to 19 million Polish patients, with the stolen database exceeding 2 terabytes.
The compromised data, primarily from 2024 and earlier periods, may include sensitive information such as PESEL numbers, contact details, records of visits, prescriptions, and treatment history. The full scope of the breach is still under investigation by MyDr's security teams, who are working with external cybersecurity experts.
This incident underscores systemic cybersecurity vulnerabilities within Poland's healthcare sector. Experts note that patients are often unaware that their data is being processed by platforms like MyDr, which serves over 10,000 clinics, including those contracted with the National Health Fund (NFZ). The breach raises concerns about data protection and the potential misuse of highly sensitive medical information.
Originally published by Rzeczpospolita in Polish. Translated, summarized, and contextualized by our editorial team with added local perspective. Read our editorial standards.