Craneware Cyber Attack: Hackers Steal Employee and Customer Data From Healthcare Software Provider 

Craneware Cyber Attack: Hackers Steal Employee and Customer Data From Healthcare Software Provider 

Craneware says hackers stole employee data and records linked to customers and business partners. Here’s what happened, what remains unknown, and how you can reduce your risk of follow-up scams. 

What Happened? 

According to The Record, Craneware — a British healthcare software provider — announced a data breach on July 20, 2026.

Hackers gained unauthorized access to part of the company’s data environment. Craneware hired outside cybersecurity and forensic specialists to investigate the incident.

The company said the breach has been contained and the hackers no longer have access to its systems. Its operations and customer services continued without disruption.

Craneware also reported the incident to the FBI and the UK Information Commissioner’s Office.

The company confirmed that hackers stole employee data and records linked to customers and business partners. However, investigators are still determining exactly what information was taken.

Stolen information can remain useful to criminals long after a breach leaves the news. They may use company names or personal details in phishing emails, fake calls, and impersonation attempts.

Your information may also have been leaked in another incident without you realizing it. Checking for data leaks can help you spot potential problems before suspicious activity appears.

If you are unsure whether your information was leaked, automatic monitoring can help. 

Futureproof monitors your data for leaks 24/7 and helps you reduce scam risks with simple, clear steps.

Who Was Affected and What Data Was Leaked?

Craneware said some employee data and a subset of customer and business partner records were stolen.

Hackers also viewed and copied many file names. The company believes much of that material contained non-sensitive information or public regulatory data.

Craneware has not said how many people or organizations were affected. It also has not shared the exact types of personal information involved.

The company has not confirmed whether patient records, medical details, Social Security numbers, or financial information were stolen.

Craneware works with more than 2,000 hospitals and health systems. It also supports nearly 10,000 clinics and retail pharmacies.

However, this does not mean every Craneware customer was affected. The company is still identifying which organizations and individuals need to receive notifications.

Customer or employee details may help criminals make phishing emails and fake calls appear more believable. Be careful with unexpected messages that mention Craneware, a hospital, clinic, pharmacy, or business partner.

Keep your personal information scam-proof

Futureproof keeps your data safer with simple guidance to set a strong password, turn on 2-step verification, and lock down your account.

Check my safety

How Hackers Entered Craneware’s Network

Craneware has not publicly explained how the hackers entered its systems.

The company also has not named the attackers or said when the intrusion began. It has not shared whether the hackers demanded money.

Without confirmed technical details, it is too early to know whether phishing, stolen passwords, or a software weakness played a role.