A cybersecurity vulnerability in ServiceNow, a cloud computing platform used extensively in the healthcare sector, may allow unauthenticated users to extract data from records. Despite being known to the vendor since 2015, it wasn’t until 2023 that ServiceNow enhanced security features. The Health Sector Cybersecurity Coordination Center (HC3) recommends organizations mitigate risk through implementing inbound traffic IP restrictions and bolstering access control lists.

Marks and Spencer issue update after 'cyber incident' – Liverpool Echo
Marks and Spencer provided an update following a cyber incident. They assured customers that payment card details were not compromised, but personal information may have