Serviceaide AI Platform Implicated in Health Data Exposure Affecting 483,000 Catholic Health Patients

Serviceaide, a provider of agentic AI-based IT management software, experienced a data breach involving a misconfigured Elasticsearch database used for its client, Catholic Health. The breach exposed the sensitive personal and medical information of over 483,000 patients for approximately seven weeks between September and November 2024. While no confirmed misuse of the data has been identified, the exposure of highly sensitive identifiers like Social Security numbers and medical records has prompted regulatory scrutiny and class action lawsuits.

An AI-linked platform operated by Serviceaide exposed sensitive health data from Catholic Health, affecting 483,000 patients. The breach stemmed from a misconfigured Elasticsearch database used in Serviceaide’s agentic AI infrastructure. Exposed information included medical records, insurance details, and login credentials. While no misuse has been confirmed, the nature of the data has prompted regulatory scrutiny and legal investigations.

Source: AI Incident Database

Risk classification

  • Primary risk domain: 2 Privacy & Security
  • Primary risk subdomain: 2.1 Compromise of privacy by obtaining, leaking or correctly inferring sensitive information

The incident involved the exposure of highly sensitive, non-public personal and medical information of over 483,000 patients due to a misconfigured database.

Additional risk subdomains

  • 2.2 AI system security vulnerabilities and attacks: The exposure resulted from an insecure direct object reference (IDOR) security vulnerability in the database configuration.

Causal factors

  • Entity: Human
  • Intent: Unintentional
  • Timing: Post-deployment

The data exposure was caused by a human misconfiguration (IDOR) of an Elasticsearch database post-deployment, which was unintentional.

EU AI Act risk tier

  • Risk tier: 3 Limited Risk

Limited Risk: The reports describe Serviceaide as providing 'AI-driven chatbots and IT support solutions', which falls under the category of chatbots requiring transparency obligations.

AI system and alleged parties

  • AI system: Serviceaide agentic AI infrastructure
  • AI purpose: Chatbot; Automatic Fault Handling
  • Behaviour type: unknown
  • Alleged developer: Serviceaide
  • Alleged deployer: Serviceaide
  • Alleged harmed parties: Patients of Catholic Health, Catholic Health

Harm severity

Highest direct severity in any category: Substantial. Severity is scored from Negligible to Catastrophic in each harm category, for harm the reports describe as caused directly or indirectly by the AI system.

  • Physical: direct Negligible, indirect Negligible
  • Infrastructure: direct Negligible, indirect Negligible
  • Property: direct Negligible, indirect Negligible
  • Financial: direct Negligible, indirect Negligible
  • Environmental: direct Negligible, indirect Negligible
  • Malicious content: direct Negligible, indirect Negligible
  • Differential treatment: direct Negligible, indirect Negligible
  • Civil rights: direct Negligible, indirect Negligible
  • Democracy: direct Negligible, indirect Negligible
  • Privacy: direct Substantial, indirect Negligible
  • Psychological: direct Negligible, indirect Negligible
  • Epistemic: direct Negligible, indirect Negligible
  • Child sexual exploitation and abuse: direct Negligible, indirect Negligible

Privacy

Reported: Yes, the reports explicitly describe a major data breach exposing sensitive personal and medical information of 483,126 patients.

Directly caused: The exposure of the Elasticsearch database directly made the personally identifiable information (including SSNs, medical records, and passwords) of 483,126 patients publicly accessible on the internet for nearly seven weeks.

Indirectly caused: N/A

Inferred additional harm: Although no direct misuse has been confirmed, it is highly likely that some exposed credentials or personal details will be targeted for phishing or identity theft in the future.

People affected

  • Occurrences reported: 1
  • People reportedly exposed: 483126

Potential causes

Management

  • Inadequate Vendor Risk Management: Lack of operational oversight in third-party vendor relationships.
  • Underfunded Cybersecurity Budget: Healthcare leaders failed to allocate sufficient budget to patient data safety.

Technology

  • Insecure Database Configuration: Elasticsearch database was left publicly accessible without authentication.
  • IDOR Misconfiguration: Insecure direct object reference allowed unauthorized access to data.
  • Lack of Database Monitoring: Absence of real-time monitoring tools delayed detection of the exposure.

Data Inputs

  • Unsecured Sensitive Health Data: Patient records and psychiatric notes were stored in an unencrypted format.
  • Credential Exposure in Database: Database contained unhashed or vulnerable email usernames and passwords.
  • Structured Data Storage Format: Structured format in Elasticsearch allowed rapid querying and exporting.

Human Factors

  • Configuration Oversight: IT staff inadvertently made the Elasticsearch database publicly available.
  • Overreliance on Third-Party: Catholic Health assumed the vendor's security protocols were sufficient.

Process and Methods

  • Delayed Incident Detection: The database remained exposed for 47 days before being discovered.
  • Slow Breach Notification: Serviceaide delayed notifying affected individuals for seven months.
  • Inadequate Vendor Auditing: Catholic Health failed to proactively audit Serviceaide's security practices.

Regulatory Environment

  • Evolving Regulatory Requirements: Complex HIPAA and 42 CFR Part 2 rules slowed down the impact assessment.
  • Weak Vendor Compliance Rules: Existing guidelines did not mandate biannual vendor security validations.

Information quality

  • Classification confidence: High
  • Reason for confidence: The reports provide consistent and detailed information regarding the nature of the data breach, the timeline of exposure (September 19 to November 5, 2024), the specific types of sensitive data exposed, and the exact number of affected individuals (483,126). There is high agreement across multiple sources regarding the cause (Elasticsearch database misconfiguration/IDOR) and the lack of immediate evidence of data exfiltration.
  • Ambiguities identified: Whether any data was actually copied by unauthorized actors remains unconfirmed, as the investigation could not definitively rule it out.
  • Alternative interpretations: None. The event is clearly a data exposure incident due to IT misconfiguration.

An IT vendor's database misconfiguration exposed the sensitive personal and medical data of over 483,000 Catholic Health patients. While healthcare is critical infrastructure, the incident was a passive data exposure with no operational disruption, physical harm, or active exploitation detected, representing a minor national security impact.

  • Overall national security impact: Minor
  • Response level: Moderate
  • Scope: Single nation
  • Primary target: United States
  • Alleged perpetrator: Unknown

Threat characteristics

  • Imminence: Long-term. The database has been secured, and any potential downstream exploitation of the exposed data represents an ongoing, long-term risk.
  • Autonomy: Human-controlled. The incident resulted from a human misconfiguration of a database rather than an autonomous decision made by the AI system.
  • Novelty: Established threat. Database misconfigurations leading to data exposure are a common and well-established cybersecurity issue.

Impact by dimension

  • Physical security: Minor. The breach affected a healthcare system, which is critical infrastructure, but did not disrupt operations, manipulate controls, or cause physical harm.
  • Information security: Negligible. No evidence of targeted espionage, information warfare, or compromise of national intelligence systems.
  • Sovereignty: Negligible. No impact on government decision-making, elections, or state sovereignty.
  • Economic security: Minor. Involves potential financial liability for the healthcare provider and minor identity theft risks for individuals, but no strategic economic threat.
  • Societal stability: Minor. Exposed sensitive personal and medical data of over 483,000 citizens, raising privacy concerns, but did not cause widespread social instability.
Explore in the interactive Incident Tracker