Craneware identifies cyber security incident with data exfiltration, impacting employee and customer records.

Investigations indicate a large volume of file names were viewed and exfiltrated in the breach.
Craneware is listed on AIM with the ticker CRW.L.
The company’s cloud platform Trisus serves a wide client base, including around 2,000 hospitals and health systems and 10,000 clinics and pharmacies.
Craneware’s underlying financials appear robust, with high gross margins and low leverage, and investor metrics showing a P/E around 22.6 and a dividend yield near 2.4%.
Edinburgh-based healthcare software firm Craneware has confirmed a cyber security incident in which attackers gained unauthorised access to part of its data environment and exfiltrated files, Evening Standard reported. Shares in the AIM-listed company fell 9.6% to 1,097 pence on Monday morning in London, according to MarketScreener.
The company said it has contained the breach. Customer services and operations remain unaffected. Craneware's cloud platform, Trisus, serves roughly 2,000 hospitals and health systems and 10,000 clinics and pharmacies across the US.
Investigators found that attackers viewed and exfiltrated a large volume of file names. Some employee, customer, and partner records were accessed, according to ADVFN. However, Craneware said a significant portion of the data was either non-sensitive or publicly available regulatory information.
The full scope of the breach is still being assessed. Craneware said it will notify affected individuals and organisations as required by law. The company stressed that its core software systems were not compromised in the attack.
Craneware reported the incident to law enforcement and regulators in both the UK and the US. That includes the UK's Information Commissioner's Office, known as the ICO, and the FBI in the United States, MarketScreener reported.
The company also brought in external cyber security and forensic specialists to support its response. It activated its incident response plan as soon as the breach was identified. Forensic work is ongoing to determine exactly which files and individuals were affected.
Craneware trades on London's AIM market under the ticker CRW.L. The firm has strong financials, with high gross margins and low debt. Its shares trade at a price-to-earnings ratio of around 22.6 and carry a dividend yield near 2.4%, according to LSE.
The timing is awkward. Craneware is a Microsoft partner and positions its Trisus platform as a cloud-first solution for US healthcare providers. A data breach raises trust concerns, especially among hospital and clinic clients who handle sensitive patient billing data.
Craneware said it will continue its forensic investigation and issue further updates as required. Affected employees, customers, and partners will be notified once the company identifies them, Evening Standard reported.
For now, the company says the incident is contained. No disruption to services has been reported. But with regulators in two countries watching and forensic work still underway, the full picture of what was taken — and by whom — is not yet clear.
Publishers
26
Articles
43
Reach
69