We are currently updating CBG to Version 5.0. During this time, you may experience temporary technical issues. For further information or support, please contact us directly.

Discussion –

0

Discussion –

0

Data Breach Reported by NHS England IT Supplier

U.K. Healthcare Tech Provider DXS International Reports Cyberattack Affecting NHS England Systems

London, U.K. – December 19, 2025 – DXS International, a U.K.-based company providing technology solutions to England’s National Health Service (NHS), has confirmed a cyberattack that impacted its office servers. The company disclosed the incident in a statement on Thursday.


Security Breach Contained Quickly

According to a filing with the London Stock Exchange, DXS discovered the security incident on December 14. The company said it “immediately” contained the breach in coordination with NHS officials and engaged a cybersecurity firm to investigate “the nature and extent of the incident.”

The filing added:

“There was minimal impact on the company’s services and the company’s front-line clinical services remain unaffected and operational.”

At this stage, the exact details of the breach remain unclear, including whether any patient data was accessed or stolen.


Ransomware Group Claims Responsibility

Earlier this week, a ransomware collective known as DevMan claimed responsibility for the attack. According to a post seen by TechCrunch on the group’s dark web site, the hackers listed DXS on December 14, asserting that they had stolen 300 gigabytes of data.


Law Enforcement and Regulatory Involvement

DXS confirmed that it had notified law enforcement and regulatory authorities, including the Information Commissioner’s Office (ICO), the U.K.’s data protection authority.

While DXS COO Steven Bauer declined to answer detailed questions, he provided TechCrunch with a statement reflecting the public filing. Similarly, Rashana Sweidan Vigerstaff, spokesperson for the ICO, told TechCrunch that the office is “assessing the information provided by DXS”, without offering further comment.

An NHS England spokesperson, Katie Baldwin, said:

“We are not aware of any patient services being impacted.”


Company Operations and Patient Data

DXS International develops software aimed at helping doctors and primary care physicians reduce operational costs. Its solutions interact with patient records and data and, in some cases, are hosted on the Health and Social Care Network (HSCN). The HSCN enables healthcare organizations across the U.K. to access and share information, although the NHS does not store patient medical data in a centralized system.


Ongoing Investigations

The cyberattack continues to be investigated by DXS and relevant authorities. Both the company and regulators are monitoring the situation to determine the full scope and potential impact of the breach.

0 Comments

Submit a Comment

Your email address will not be published. Required fields are marked *