The Hospital for Sick Children (SickKids) says a recent cybersecurity incident led to unauthorized access to the personal information of some current and former employees. The hospital also says information related to job applicants may have been involved.

Both outlets report the issue originates from a vulnerability in third-party software used by SickKids and other organizations. The exposure is linked to SickKids’ external Careers website, which is used by prospective applicants and job seekers. City News Toronto adds that the Careers site has since been restored and that an investigation is underway.

Bleeping Computer notes that clinical systems and patient records are not affected, indicating the incident is limited to the personnel and employment-related data associated with the Careers platform. City News Toronto similarly frames the event as a breach tied to the third-party component rather than a compromise of hospital clinical operations. The hospital has not detailed further technical specifics in the provided reports, and the scope remains focused on employee and applicant information via the external website.