French healthcare services firm Viamedis has fallen victim to a cyberattack, compromising the data of policyholders and healthcare professionals nationwide.
The company’s website remains inaccessible, with an announcement posted on LinkedIn alerting users of the data breach.
Exposed data includes policyholders’ marital status, date of birth, social security numbers, names of health insurers, and guarantees open to third-party payment. However, Viamedis clarified that banking information, postal details, telephone numbers, and email addresses were not stored in the breached systems.
Viamedis is taking steps to inform affected health organizations, file a complaint with the public prosecutor, and notify relevant authorities such as CNIL and ANSSI. An ongoing investigation aims to determine the full extent of the cyberattack.
While the number of affected individuals has not been disclosed, Viamedis manages payments for 84 healthcare organizations covering 20 million insured individuals.
Christophe Cande, Viamedis’ General Director, confirmed that the breach resulted from a successful phishing attack on an employee, not ransomware.
One of Viamedis’ partners, Malakoff Humanis, confirmed the indirect impact of the breach on its website, reassuring customers that banking, medical, and contact details stored on its platforms remain secure.
Despite access to user accounts and reimbursement claims remaining available, the temporary disconnection of Viamedis’ platform is expected to disrupt certain healthcare services. Other service providers utilizing Viamedis, including Carte Blanche Partenaires, Itelis, Kalixia, Santéclair, and Audiens, may face similar challenges.
Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543