MyDr, a healthcare platform owned by the Docplanner group, has been targeted in a cyberattack, according to the Polish Press Agency (PAP). Poland’s Minister of Digital Affairs, Krzysztof Gawkowski, said there were indications of potentially unauthorised access to the company’s systems. So far, there is no confirmation that patient or customer data have been leaked. The incident is being investigated by the relevant authorities and highlights a broader problem: cyber threats against Poland’s healthcare sector are rising rapidly.
On Monday, 10 August, Gawkowski published the first official information about the incident on X. He said the appropriate services had been notified and were working to establish the circumstances of the attack while also supporting the company in securing its IT infrastructure.
MyDr’s customers, including medical facilities and doctors, were informed that the company had identified possible unauthorised access to its systems.
At this stage, there is no confirmed evidence that data were exfiltrated.
Cybersecurity Incidents in Polish Healthcare Are Surging
The MyDr attack is part of a much broader trend.
Data from Poland’s e-Health Centre show that the number of cybersecurity incidents affecting the healthcare sector has been increasing sharply. According to a CSIRT CeZ report, 1,441 incidents were recorded in 2025, more than 60% above the previous year.
The most common cases included online fraud, vulnerable services, compromised credentials and malware infections.
The figures illustrate how quickly healthcare organisations are becoming part of the frontline of cybercrime.
Check Point: Healthcare Is a Prime Target
The problem is not limited to Poland.
According to Check Point Research, healthcare has become one of the most attractive targets for cybercriminals worldwide.
Check Point’s The State of Cyber Security 2025 report found that healthcare organisations accounted for around 10% of all publicly disclosed ransomware victims in 2024, making healthcare the second most heavily targeted industry after manufacturing.
The reason is straightforward. Healthcare providers store exceptionally valuable information, ranging from names and contact details to medical histories, diagnostic results and treatment records.
“Digitalisation is transforming healthcare by improving patient services through innovations such as electronic databases and medical records, telemedicine and AI-based diagnostics. At the same time, cyberattacks can delay medical procedures, create congestion in emergency departments and disrupt critical services. In extreme situations, that can directly affect patients’ lives,” says Wojciech Głażewski, Managing Director of Check Point Poland.
Many Healthcare Providers Still Lack Dedicated Cybersecurity Teams
The growing number of attacks is colliding with an uneven level of cybersecurity preparedness across the healthcare system.
A survey conducted by the e-Health Centre among more than 11,000 organisations found that 72.34% of healthcare providers had no team specifically assigned to cybersecurity tasks.
Even among hospitals, the figure remained high at 58.78%.
Basic security processes are also missing in many organisations. CSIRT CeZ data show that around 60% of healthcare entities do not actively monitor emerging vulnerabilities, while fewer than 60% regularly test their backups and verify whether systems can actually be restored after a failure.
This combination makes healthcare attractive to criminals not only because of the value of the information stored in medical systems, but also because some organisations remain relatively easy targets.
Cyberattacks Can Disrupt Patient Care, Not Just Steal Data
The consequences of an attack can go far beyond a data breach.
Compromised IT systems can disrupt patient registration, access to electronic medical records, diagnostics and communication between hospital departments.
A cyberattack on the Ministry of Interior and Administration hospital in Kraków in March 2025 demonstrated how quickly an IT incident can affect healthcare delivery.
A failure of the hospital’s main computer system used for medical documentation forced the facility to suspend some planned admissions and redirect ambulances to other hospitals.
Such incidents show that cybersecurity in healthcare is not merely an IT issue. It is increasingly a matter of operational continuity and patient safety.
Ransomware Remains One of the Biggest Threats
Ransomware can be particularly damaging because attackers may encrypt entire systems and demand payment for restoring access.
According to CSIRT CeZ data, the number of ransomware attacks on healthcare organisations worldwide increased from 69 in 2020 to 506 in 2024.
For hospitals, clinics and healthcare technology providers, the risk is therefore twofold: sensitive information may be stolen, while access to essential systems may also be blocked.
The MyDr incident has not yet been confirmed as a data breach, but it comes at a time when the healthcare sector is becoming increasingly dependent on digital platforms, cloud services and electronic medical documentation.
That digital transformation delivers major benefits for patients and medical professionals, but it also means that protecting healthcare infrastructure is becoming an increasingly important part of maintaining the continuity of care.





