Veradigm Inc. revealed a cybersecurity incident involving one of its third-party vendors, which exposed sensitive patient data, including Social Security numbers, for a select group of company customers. The disclosure, submitted to the U.S. Securities and Exchange Commission on September 8, 2026, underscores a series of vendor-related data breaches impacting healthcare organizations that depend on interconnected third-party systems to provide patient care services. This pattern of limited, credential-based access mirrors a broader industry trend: business associates and third-party vendors have increasingly become the weak link in healthcare data security, reportedly accounting for a significant share of reported breaches in recent years.
Veradigm said it has not yet determined the full extent of potential liabilities from the incident but currently does not believe the breach is reasonably likely to materially impact on its business, operations, or financial results.












