UT Southwestern Medical Center Hit in MOVEit Software Vulnerability

UTSW is another victim in a long line of cyberattacks due to vulnerabilities through the MOVEit software.

By HFT Staff


UT Southwestern Medical Center (UTSW) was one of the many organizations, both nationally and internationally, that experienced a cybersecurity attack affecting MOVEit software, which securely moves large data files between networks. On May 30, 2023, it was brought to the attention of the UTSW Privacy Office that on May 28, 2023, an unknown individual exploited a previously unidentified vulnerability within the software, which allowed access to the files stored within UTSW’s MOVEit server. 

As a result of this attack, the UTSW Privacy Office confirmed the theft of certain protected health information. Based on the analysis of the stolen files, patient data varied and may have included name, medical record number, date of birth, name of medication, dosage of medication, prescribing provider and, for a smaller number, Social Security information. 

UT Southwestern is in the process of contacting each impacted patient through direct mail with specifics on the information that was stolen. Once the attack was detected, UT Southwestern immediately took steps to secure systems and networks and limit the amount of information housed within its MOVEit server. A multidisciplinary team at UT Southwestern began identifying both individuals and types of data impacted to prepare notifications. UTSW is now sending personalized notifications to individuals affected to explain the type of data involved. Monitoring for any additional suspicious activities is ongoing and continuous.   



July 27, 2023


Topic Area: Information Technology , Safety , Security


Recent Posts

5 Reasons Engineering is the Edge in Healthcare Master Planning

The most successful plans go further to unlock smarter investments, improve resilience and enable better patient outcomes.


Building an AI-Ready Healthcare Facility 

Creating a secure, standardized data foundation can help facilities teams put AI to work more effectively.


Family Medical Associates of Raleigh Reports April 2026 Data Breach

The investigation has found evidence that between April 18, 2026, and April 20, 2026, an unauthorized actor intermittently accessed some FMAR systems.


Every Detail Matters: A Patient's Story of Healing, Hope and Healthcare Facilities

In the Facilities in Focus season finale, 11-year-old Kendalynn and her mother share how Intermountain Primary Children’s Hospital became more than a place for care.


Geisinger Wyoming Valley Medical Center Tops Off New 11-Story Tower

The expansion will improve the patient experience by transitioning the hospital to all private patient rooms while significantly increasing clinical capacity.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.