Healthcare IT News 2026/07/22

Samwise Healthcare IT Newsletter

Wednesday, July 22, 2026

Healthcare IT  ·  Cybersecurity  ·  Policy  ·  AI Analytics  ·  Interoperability
All your morning news, carefully curated and summarized daily
CYBERSECURITY

Hospital Billing Vendor Craneware Discloses Data Breach Affecting Systems at 2,000 U.S. Hospitals

Billing and pharmacy software vendor Craneware disclosed a cybersecurity incident via a July 20 filing with the London Stock Exchange. The Edinburgh, Scotland-based company, which serves more than 2,000 U.S. hospitals and nearly 10,000 clinics and retail pharmacies, says unauthorized actors accessed and exfiltrated a significant volume of file names, along with a percentage of employee records and a subset of customer and partner data. Craneware activated its incident response plan and brought in external cybersecurity and forensic specialists; investigators confirmed no residual indicators of compromise remain in company systems. Customer services and operations were not disrupted.

Sources: Becker’s Hospital Review   ✉︎ Email 💬 Text

CYBERSECURITY

Multiple Hacking Groups Claim Data Theft From Abbott’s Cancer Diagnostics Division

Abbott is investigating unauthorized access to internal systems in its cancer diagnostics division after multiple cybercriminal groups claimed to have stolen sensitive data. The incident involves Exact Sciences, Abbott’s cancer testing business acquired for $23 billion in March 2026. Cybercrime gang ShinyHunters claimed on a darkweb site to have stolen data from Exact Sciences, while a separate group called ShadowByt3$ told security researchers it used compromised credentials to access Abbott’s LabCentral customer portal. Abbott disclosed the incident July 16, stating it does not affect business operations or laboratory services and that no material financial impact is expected. External cybersecurity experts and law enforcement are engaged.

Sources: GovInfoSecurity   ✉︎ Email 💬 Text

CYBERSECURITY

Clover Health Reports Social Engineering Attack That Compromised Three Employee Accounts

Healthcare insurer Clover Health disclosed a data breach after discovering July 4 that a hacker broke into accounts of three employees through social engineering. The affected employees worked on scheduling member visits and managing broker relationships, and had access to certain personally identifiable information and protected health information for some of the company’s approximately 156,000 members across five states. Clover has not yet determined how many people are affected or what types of data were exposed. The company contained the breach and notified law enforcement, and is continuing to investigate the full scope of compromised information.

Sources: Healthcare Dive   ✉︎ Email 💬 Text

CYBERSECURITY

ApolloMD Agrees to $4 Million Settlement Over Qilin Ransomware Patient Data Theft

Revenue cycle management firm ApolloMD has agreed to pay just over $4 million to settle class action litigation stemming from a Qilin ransomware gang data theft that compromised patient information across nearly a dozen physician practices. The breach affected approximately 627,000 patients, whose protected health information was accessed and exfiltrated. The Qilin gang claimed responsibility for the data theft that prompted the legal action. ApolloMD provides revenue cycle management services to physician practices. The settlement resolves claims brought on behalf of affected patients seeking compensation for the unauthorized exposure of their health records and personal information.

Sources: GovInfoSecurity   ✉︎ Email 💬 Text

AI/ANALYTICSPOLICY

Digital Medicine Society Launches FDA-Backed Open-Access AI Governance Initiative

The Digital Medicine Society launched an initiative on July 21 to build practical, open-access artificial intelligence governance tools for healthcare organizations. The initiative, called Operationalizing AI Governance in Healthcare, is backed by the U.S. Food and Drug Administration, Qualified Health, and a coalition of 30 healthcare organizations. DiMe aims to develop tools to help hospitals and health systems evaluate, monitor and integrate AI technologies responsibly across care settings. The first tools are expected to be available within two months, with the full suite of governance resources slated for completion by year-end 2026.

Sources: Healthcare IT News   ✉︎ Email 💬 Text

AI/ANALYTICSEHR/EMR

Advocate Health and ECU Health Report Early Wins With Epic Agent Factory AI Platform

Advocate Health and ECU Health have shared early results from deploying Epic’s Agent Factory agentic AI platform, describing both the potential and the prerequisites for scaling autonomous AI in hospital settings. ECU Health reduced manual chart review by 20 hours per week, while Advocate Health achieved pharmacy workflow automation through its Agent Factory implementation. Both health systems emphasized that successful deployment required strong data governance, dedicated team resources and realistic expectations about what AI agents can accomplish in early stages. The deployments offer early evidence of measurable operational gains from EHR-integrated agentic AI.

Sources: Healthcare IT News   ✉︎ Email 💬 Text

AI/ANALYTICS

Health Systems Wrestle With Token Costs and Trust as Agentic AI Scales

Advocate Health Chief Data and AI Officer Andy Crowder and ECU Health Vice President of Clinical Operations Jacob Parrish described building governance frameworks for their Epic Agent Factory deployments that require human-in-the-loop approval for all agent actions before autonomous execution. Token budget management has emerged as a significant operational concern: Uber used its entire annual agentic AI budget in the first three months of the year and had to cap usage companywide. Healthcare leaders are watching such examples as they design cost controls for AI agent programs. Both executives said building clinician trust in AI outputs must precede any expansion of agent autonomy.

Sources: Healthcare IT News   ✉︎ Email 💬 Text

TELEHEALTHINTEROPERABILITY

Telemedicine’s Next Phase Requires an Interoperable EHR-Centered Ecosystem, Expert Says

Healthcare organizations must abandon fragmented virtual care applications and build interoperable, EHR-centered telemedicine ecosystems to advance the next phase of telehealth, according to an Accenture health technology expert writing in Healthcare IT News. Asher Perzigian argues that siloed telemedicine tools are incompatible with efficient clinical workflows and recommends that chief information officers require open APIs in all vendor contracts, invest in integration infrastructure before adding new digital tools, and measure virtual care capabilities as long-term products by clinical outcomes. FHIR standards and AI integration are described as foundational to achieving effective interoperability across virtual and in-person care delivery.

Sources: Healthcare IT News   ✉︎ Email 💬 Text

Leave a Reply