2026 ChipSoft (NL) — ransomware on healthcare IT; HIX365 / patient-portal exposure concerns
Data compromised
Potential patient and administrative health data per provider assessments—scope ongoing
Technical writeup
Dutch healthcare software vendor ChipSoft, which supplies electronic patient systems to a large share of Netherlands hospitals, suffered a disruptive cyber event in early April 2026 reported as ransomware by outlets including The Register, with national healthcare CERT coordination. Follow-on reporting (e.g., NL Times) discussed possible patient-data exposure via HIX365 and related portal flows, with dozens of providers notifying the Dutch DPA as impact reviews continued. This entry documents both operational ransomware impact and downstream privacy risk—not only a silent database misconfiguration.
Root cause
Ransomware attack against vendor infrastructure (per Register / NL Times)