Novocure Reports Cybersecurity Incident Affecting Over 1,400 US Patients

Health technology company Novocure, which develops noninvasive cancer treatments, said on Tuesday that it experienced a cybersecurity incident involving unauthorized access to certain information systems in mid-August. The breach exposed internal records of more than 1,400 patients in the United States, according to a filing with the S. Securities and Exchange Commission (SEC) reported by Reuters and covered by The Economic Times and com.

The company said it activated its cybersecurity response plan, implemented containment measures, and initiated an internal investigation of the event. Novocure also stated that access to its medical treatment devices was not obtained, and that all its systems remain fully functional.

According to the SEC filing, the exposed data included internal company patient ID numbers and general contact information for healthcare providers the company works with, as well as job titles and phone numbers for an undisclosed number of Novocure employees. Fewer than 50 patients in the western United States had additional identifying information exposed.

The filing, as reported by The Economic Times, states: "At this time, we do not believe that this cybersecurity incident will have a material impact or reasonably likely material impact on our financial condition and results of operations; however, at the time of this filing we are continuing to ascertain additional information regarding this incident."

com noted that the breach adds to a growing number of cyberattacks on the healthcare sector, citing recent incidents involving medical device makers Abbott, Stryker Medtronic, and Boston Scientific, drugmaker Novo Nordisk, and drug-delivery equipment supplier West Pharmaceutical Services.

The company said it launched an internal investigation once the attack was flagged, and further information regarding the incident remains pending.