Oracle Health, the healthcare subsidiary of Oracle Corporation, experienced a data breach involving legacy Cerner data migration servers. This incident, which Oracle has communicated to its customers through private letters, is reported to have potentially exposed sensitive customer data. The breach is a consequence of Oracle's acquisition of Cerner Corp, a notable electronic health records business, as Oracle aimed to transition the healthcare software to cloud infrastructure. The significance of the data involved and the potential ramifications of such breaches in the healthcare sector underline the serious nature of this cybersecurity event.
TPRM report: https://scoringcyber.rankiteo.com/company/oraclehealth
"id": "ora455040125",
"linkid": "oraclehealth",
"type": "Breach",
"date": "4/2025",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Healthcare',
'name': 'Oracle Health',
'type': 'Company'}],
'customer_advisories': 'Private letters to customers',
'data_breach': {'sensitivity_of_data': 'High',
'type_of_data_compromised': ['sensitive customer data']},
'description': 'Oracle Health, the healthcare subsidiary of Oracle '
'Corporation, experienced a data breach involving legacy '
'Cerner data migration servers. This incident, which Oracle '
'has communicated to its customers through private letters, is '
'reported to have potentially exposed sensitive customer data. '
"The breach is a consequence of Oracle's acquisition of Cerner "
'Corp, a notable electronic health records business, as Oracle '
'aimed to transition the healthcare software to cloud '
'infrastructure. The significance of the data involved and the '
'potential ramifications of such breaches in the healthcare '
'sector underline the serious nature of this cybersecurity '
'event.',
'impact': {'systems_affected': ['legacy Cerner data migration servers']},
'response': {'communication_strategy': 'Private letters to customers'},
'title': 'Oracle Health Data Breach',
'type': 'Data Breach'}