Company Details
wellstar-health-system
18,766
117,611
62
wellstar.org
28
WEL_1411501
Completed


Wellstar Health System Company CyberSecurity Posture
wellstar.orgAt Wellstar Health System, our mission is to enhance the health and well-being of every person we serve. Nationally ranked and locally recognized for our high-quality care, inclusive culture and world-class doctors and caregivers, Wellstar is one of the largest, most integrated healthcare systems in Georgia. Our specialists and primary care providers work in a multidisciplinary environment with nearly 30,000 diverse team members throughout our hospitals, health parks and medical offices. Communities can also access our outpatient centers, a pediatric center, nursing centers, and hospice and home care services. We’re proud to be home to the second-largest Emergency Department in the country, as well as being the only system in Georgia operating multiple trauma centers. We’re also known for our exceptional work culture, featured on the Great Places to Work®, Fortune 100 Best Companies to Work For® and the Seramount Best Company for Multicultural Women® lists. We continue to attract the best and the brightest in healthcare. At a time when our industry is changing rapidly, Wellstar remains committed to exceeding expectations from our patients and team members, while transforming healthcare delivery. We stand behind our values to serve with compassion, pursue excellence and honor every voice.
Company Details
wellstar-health-system
18,766
117,611
62
wellstar.org
28
WEL_1411501
Completed
Between 750 and 799

WHS Global Score (TPRM)XXXX

Description: An unauthorized had gained access to two email accounts of Wellstar Health System and compromised some of its data. The exposed information included patients’ health care information including names, medical record numbers, unique Wellstar account numbers, and laboratory information. However, no leaked information was misused.


No incidents recorded for Wellstar Health System in 2026.
No incidents recorded for Wellstar Health System in 2026.
No incidents recorded for Wellstar Health System in 2026.
WHS cyber incidents detection timeline including parent company and subsidiaries

At Wellstar Health System, our mission is to enhance the health and well-being of every person we serve. Nationally ranked and locally recognized for our high-quality care, inclusive culture and world-class doctors and caregivers, Wellstar is one of the largest, most integrated healthcare systems in Georgia. Our specialists and primary care providers work in a multidisciplinary environment with nearly 30,000 diverse team members throughout our hospitals, health parks and medical offices. Communities can also access our outpatient centers, a pediatric center, nursing centers, and hospice and home care services. We’re proud to be home to the second-largest Emergency Department in the country, as well as being the only system in Georgia operating multiple trauma centers. We’re also known for our exceptional work culture, featured on the Great Places to Work®, Fortune 100 Best Companies to Work For® and the Seramount Best Company for Multicultural Women® lists. We continue to attract the best and the brightest in healthcare. At a time when our industry is changing rapidly, Wellstar remains committed to exceeding expectations from our patients and team members, while transforming healthcare delivery. We stand behind our values to serve with compassion, pursue excellence and honor every voice.


Driven by the vision of its Chairman, Dr. Prathap C. Reddy, the Apollo Hospitals Group pioneered corporate healthcare in India. Apollo revolutionized healthcare when Dr Prathap Reddy opened the first hospital in Chennai in 1983. Today Apollo is the world’s largest integrated healthcare platform wit

At The Ohio State University Wexner Medical Center you will find more than a job – you can establish a career that allows you to actually change the face of medicine. As central Ohio's only academic medical center, we emphasize learning, development and innovation in order to offer the very best in

Abbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-changing technologies spans the spectrum of healthcare, with leading businesses and products in diagnostics, medical devices, nutritional and branded generic medicines. Our 114,000 col

Founded in 2003, Omega Healthcare Management Services® (Omega Healthcare) empowers healthcare to thrive via intelligent solutions that optimize revenue cycle operations, administrative workflows, care coordination, and clinical research on a global scale. The company works with providers, payers, li
Johns Hopkins Medicine is a governing structure for the University’s School of Medicine and the health system, coordinating their research, teaching, patient care, and related enterprises. The Johns Hopkins Hospital opened in 1889, followed four years later by the university’s School of Medicine

Sanford Health is the largest rural health system in the U.S. Our organization is dedicated to transforming the health care experience and providing access to world-class health care in America’s heartland. Headquartered in Sioux Falls, South Dakota, we serve more than one million patients and 220,0

Our mission is to improve the health and well-being of North Carolinians and others whom we serve. We accomplish this by providing leadership and excellence in the interrelated areas of patient care, education and research. UNC Health and its 40,000 teammates, continue to serve as North Carolina’s
Fortis Healthcare Group is a leading integrated healthcare provider operating across the Asia Pacific region. With more than 20,000 employees and growing, Fortis Helathcare is currently present in Australia, Canada, Hong Kong SAR, India, Mauritius, New Zealand, Singapore, Sri Lanka, UAE, and Vietnam

O Ministério da Saúde é o órgão do Poder Executivo Federal responsável pela organização e elaboração de planos e políticas públicas voltados para a promoção, a prevenção e a assistência à saúde dos brasileiros. É função do Ministério dispor de condições para a proteção e recuperação da saúde da pop
.png)
Tom Golisano, founder of Paychex, and a leading health care philanthropist, announced today a historic $50 million investment in the...
As the calendar turns to 2026, it's only natural to look forward to the possibilities a new year brings, but it's just as important to look...
Rochester Regional Health has been awarded $15 million through New York's statewide Health Care Facility Transformation Program to support...
Uncover advancements in cyber security and cloud computing at Cyber Security & Cloud Expo North America on 18-19 May 2026 at San Jose McEnery Convention...
The AHA's latest Forever Grateful social media toolkit includes posts and graphics expressing support and appreciation for all health care...
Wellstar plans to expand CLEAR1 technology across more than 150 locations, saving time and improving patient experiences with a faster,...
I never thought I would make a big move like this, but it's just the right time, right place," says Jeffery Talbert, PhD.
Health systems are still investing in digital health startups, even if their strategy around deploying capital has changed.
Wellstar Health System, Inc., has 32000 employees, about 4 million patients and visitors who visit their campuses each year and roughly 18 million square...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Wellstar Health System is http://www.wellstar.org.
According to Rankiteo, Wellstar Health System’s AI-generated cybersecurity score is 758, reflecting their Fair security posture.
According to Rankiteo, Wellstar Health System currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Wellstar Health System has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Wellstar Health System is not certified under SOC 2 Type 1.
According to Rankiteo, Wellstar Health System does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Wellstar Health System is not listed as GDPR compliant.
According to Rankiteo, Wellstar Health System does not currently maintain PCI DSS compliance.
According to Rankiteo, Wellstar Health System is not compliant with HIPAA regulations.
According to Rankiteo,Wellstar Health System is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Wellstar Health System operates primarily in the Hospitals and Health Care industry.
Wellstar Health System employs approximately 18,766 people worldwide.
Wellstar Health System presently has no subsidiaries across any sectors.
Wellstar Health System’s official LinkedIn profile has approximately 117,611 followers.
Wellstar Health System is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Wellstar Health System does not have a profile on Crunchbase.
Yes, Wellstar Health System maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/wellstar-health-system.
As of January 21, 2026, Rankiteo reports that Wellstar Health System has experienced 1 cybersecurity incidents.
Wellstar Health System has an estimated 31,578 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Title: Unauthorized Access to Wellstar Health System Email Accounts
Description: An unauthorized user gained access to two email accounts of Wellstar Health System and compromised some of its data. The exposed information included patients’ healthcare information including names, medical record numbers, unique Wellstar account numbers, and laboratory information. However, no leaked information was misused.
Type: Data Breach
Attack Vector: Unauthorized Access
Threat Actor: Unauthorized User
Common Attack Types: The most common types of attacks the company has faced is Breach.

Data Compromised: Patients’ healthcare information, Names, Medical record numbers, Unique wellstar account numbers, Laboratory information
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Patients’ Healthcare Information, Names, Medical Record Numbers, Unique Wellstar Account Numbers, Laboratory Information and .

Entity Name: Wellstar Health System
Entity Type: Healthcare
Industry: Healthcare

Type of Data Compromised: Patients’ healthcare information, Names, Medical record numbers, Unique wellstar account numbers, Laboratory information
Sensitivity of Data: High
Personally Identifiable Information: NamesMedical record numbersUnique Wellstar account numbers
Last Attacking Group: The attacking group in the last incident was an Unauthorized User.
Most Significant Data Compromised: The most significant data compromised in an incident were Patients’ healthcare information, Names, Medical record numbers, Unique Wellstar account numbers, Laboratory information and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Names, Laboratory information, Patients’ healthcare information, Medical record numbers and Unique Wellstar account numbers.
.png)
SummaryA command injection vulnerability (CWE-78) has been found to exist in the `wrangler pages deploy` command. The issue occurs because the `--commit-hash` parameter is passed directly to a shell command without proper validation or sanitization, allowing an attacker with control of `--commit-hash` to execute arbitrary commands on the system running Wrangler. Root causeThe commitHash variable, derived from user input via the --commit-hash CLI argument, is interpolated directly into a shell command using template literals (e.g., execSync(`git show -s --format=%B ${commitHash}`)). Shell metacharacters are interpreted by the shell, enabling command execution. ImpactThis vulnerability is generally hard to exploit, as it requires --commit-hash to be attacker controlled. The vulnerability primarily affects CI/CD environments where `wrangler pages deploy` is used in automated pipelines and the --commit-hash parameter is populated from external, potentially untrusted sources. An attacker could exploit this to: * Run any shell command. * Exfiltrate environment variables. * Compromise the CI runner to install backdoors or modify build artifacts. Credits Disclosed responsibly by kny4hacker. Mitigation * Wrangler v4 users are requested to upgrade to Wrangler v4.59.1 or higher. * Wrangler v3 users are requested to upgrade to Wrangler v3.114.17 or higher. * Users on Wrangler v2 (EOL) should upgrade to a supported major version.
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:L).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.14 and 7.2.4. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.