MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Covenant Health cyberattack disrupts hospital systems and patient services across New England

An unauthorized party gained access to COVENANT HEALTH's IT environment beginning on 18/05/2025 and accessed patient information. After detecting irregular activity on 26/05/2025, Covenant Health discontinued access to data systems across hospitals, clinics and provider practices. The resulting outage impaired phone and internet connectivity, restricted outpatient laboratory services, complicated prescription refills, imaging and appointment handling, and caused St. Mary's Health System to divert ambulances for a period. Full computer services across Covenant Health hospitals and provider practices were reported restored on 30/06/2025. The QILIN ransomware group later claimed responsibility and data theft; public evidence confirms unauthorized access and exfiltration but does not independently establish ransomware encryption as the mechanism of the operational outage.

84

Estimated severity

84 / 100

92

Source reliability

92 / 100

Approximate Date

18/05/2025

Targeted Company

COVENANT HEALTH

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

United States

USA

Other Affected Countries

No other affected countries reported

Target country

United States

Affected countries

United States

Impacted regions

Maine · United StatesNew Hampshire · United States

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.