Nutex Health, a Houston-based healthcare services and hospital-operations company, disclosed that an unauthorized third party accessed its network and exfiltrated files from certain servers. The potentially exposed information may include confidential or private data involving patients, employees, providers, business and financial operations, and intellectual property; the company is still determining the exact data types and affected individuals or partners.
The company activated its incident-response plan, retained external forensic specialists, implemented containment measures, and notified law enforcement. Nutex said the attacker could leak the stolen data, although no threat group had publicly claimed responsibility. As of its disclosure, Nutex reported no material impact on operations or financial-reporting systems and does not expect a material effect on its strategy, financial condition, or operating results.

See attribution, scope, and your downstream exposure.
3 events from the most recent confirmed update back to the earliest known activity.
Nutex stated that, as of August 24, it had identified no material impact on operations or financial-reporting systems and did not believe the incident was reasonably likely to materially affect its business strategy, operations, financial condition, or results.
After detecting the intrusion, Nutex activated its cybersecurity response plan, engaged external incident-response and forensic specialists, implemented containment measures, and notified law enforcement. The company said no cybercrime group had publicly claimed responsibility and that the attacker could leak the exfiltrated information.
Nutex Health reported in an SEC Form 8-K that an unauthorized party accessed its network and exfiltrated files from certain servers. The company said the data may include private or confidential patient, employee, provider, business, financial, or intellectual-property information, while the scope and affected individuals remain under investigation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
5 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcescworld.com
Open sourcesecurityweek.com
Open sourcebleepingcomputer.com
Open sourcesec.gov
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.