Edinburgh-based healthcare billing software maker Craneware disclosed on Monday, July 20, 2026, that hackers stole a “significant volume” of customer data from its systems in a cyberattack that is still under investigation.
The company filed a statement with the London Stock Exchange confirming that a “percentage” of employee data, customer data, and partner records had been exfiltrated. Craneware said the hackers appear to have been expelled from its systems, though it did not specify what types of data were taken or whether the attackers have made any ransom demands.
Craneware’s accounting and billing software is used by thousands of clinics, hospitals, and pharmacies across the United States. The company handles large volumes of medical records and patient data on behalf of its customers. When Craneware acquired Florida-based pharmacy software maker Sentry in 2021, it gained access to 147 million patient records collected over two decades.
CEO Keith Neilson did not respond to questions about the incident.
The breach is the latest in a series of cyberattacks targeting technology companies that supply software and services to the U.S. healthcare sector. By compromising billing and revenue software, hackers can access large amounts of patient medical data and may use the threat of public disclosure to extort affected companies.
Craneware joins several other health tech firms breached in recent months. In March 2026, healthcare revenue firm TriZetto confirmed hackers stole data on more than 3.4 million people, while medical data storage company CareCloud reported a breach of patient electronic health records with no volume disclosed. In July 2025, medical billing company Episource began notifying at least 5.4 million people of a data theft.
The largest known breach of U.S. healthcare data occurred in 2024, when a ransomware gang hacked UnitedHealth-owned Change Healthcare and stole records belonging to at least 192 million people — a number the company said affected a “substantial proportion of people in America.”
Source: TechCrunch