UnitedHealth paid ransom to bad actors, says patient data was compromised in Change Healthcare cyberattack

Ashley Capoot reports: UnitedHealth Group on Monday said it paid ransom to cyberthreat actors to try and protect patient data, following the February cyberattack on its subsidiary Change Healthcare. The company also confirmed that files containing pers… Continue reading UnitedHealth paid ransom to bad actors, says patient data was compromised in Change Healthcare cyberattack

UnitedHealth paid ransom to bad actors, says patient data was compromised in Change Healthcare cyberattack

Ashley Capoot reports: UnitedHealth Group on Monday said it paid ransom to cyberthreat actors to try and protect patient data, following the February cyberattack on its subsidiary Change Healthcare. The company also confirmed that files containing pers… Continue reading UnitedHealth paid ransom to bad actors, says patient data was compromised in Change Healthcare cyberattack

International investigation disrupts phishing-as-a-service platform LabHost – EUROPOL

This week, law enforcement from 19 countries severely disrupted one of the world’s largest phishing-as-a-service platform, known as LabHost. This year-long operation, coordinated at the international level by Europol, resulted in the compromise of LabH… Continue reading International investigation disrupts phishing-as-a-service platform LabHost – EUROPOL

Cybersecurity firm suspects Russia-linked hacking group behind cyberattack on Texas water facility

Tom Olson reports: A hacking group with ties to the Russian government is suspected of carrying out a cyberattack in January that caused a tank at a Texas water facility to overflow, experts from US cybersecurity firm Mandiant said Wednesday. The attac… Continue reading Cybersecurity firm suspects Russia-linked hacking group behind cyberattack on Texas water facility

Lawsuits mount and cyberattack could cost UnitedHealth Group up to $1.6B this year

Christopher Snowbeck of the Star Tribune in Minnesota is doing some great reporting on the Change Healthcare UnitedHealth Group cyberattack. Yesterday, he did a write-up on a Minneapolis therapy clinic suing Change Healthcare. He reports, in part: Twin… Continue reading Lawsuits mount and cyberattack could cost UnitedHealth Group up to $1.6B this year

Prominent US senator sees new momentum for healthcare cybersecurity push

Eric Geller reports: As U.S. hospitals struggle to pay their employees amid a cyberattack that knocked out a major payment vendor, a powerful Democratic senator is seizing the moment to push for better security in the sorely vulnerable healthcare secto… Continue reading Prominent US senator sees new momentum for healthcare cybersecurity push

Proporsed Rule: Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) Reporting Requirements

A quick note that the official draft of CIRCA is now published: A Proposed Rule by the Homeland Security Department on 04/04/2024 All information is linked from https://www.federalregister.gov/documents/2024/04/04/2024-06526/cyber-incident-reporting-fo… Continue reading Proporsed Rule: Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) Reporting Requirements

Threat actors walked away from a $1.8 million offer because the victim talked to the media?!

A recent listing on LockBit’s leak site about Crinetics Pharmaceuticals seemed unusual. It included a disclaimer: “Those responsible for the exfiltration of data belonging to this victim have no association, indirect or direct, with the Loc… Continue reading Threat actors walked away from a $1.8 million offer because the victim talked to the media?!

Cyber Safety Review Board Releases Report on Microsoft Online Exchange Incident from Summer 2023

CSRB’s Third Review Focuses on Actions Microsoft, Other Cloud Providers, and the U.S. Government Should Take to Protect Cloud Customers WASHINGTON – Today, the U.S. Department of Homeland Security (DHS) released the Cyber Safety Review Board’s (CSRB) f… Continue reading Cyber Safety Review Board Releases Report on Microsoft Online Exchange Incident from Summer 2023

Indian government’s cloud spilled citizens’ personal data online for years

Jagmeet Singh reports: The Indian government has finally resolved a years-long cybersecurity issue that exposed reams of sensitive data about its citizens. A security researcher exclusively told TechCrunch he found at least hundreds of documents contai… Continue reading Indian government’s cloud spilled citizens’ personal data online for years