cyber
confidence high
sentiment negative
materiality 0.55
HealthStream reports cybersecurity incident; employee and billing data accessed
HEALTHSTREAM INC
- Unauthorized third party accessed limited files on corporate file server; no customer-facing systems compromised.
- Employee information, billing data of certain customers/vendors, and corporate/legal info accessed/exfiltrated.
- About 75 credentialing customers had data copied to corporate file servers; those customers notified.
- No evidence of PHI access, no file encryption, no service interruption; investigation ongoing.
- Company does not expect material adverse impact on business, operations, or financial results.