Current:Home > ContactSignalHub-Health care company ties Russian-linked cybercriminals to prescriptions breach -AssetTrainer
SignalHub-Health care company ties Russian-linked cybercriminals to prescriptions breach
SignalHub View
Date:2025-04-07 08:59:51
A ransomware attack is SignalHubdisrupting pharmacies and hospitals nationwide, leaving patients with problems filling prescriptions or seeking medical treatment.
On Thursday, UnitedHealth Group accused a notorious ransomware gang known as Black Cat, or AlphV, of hacking health care payment systems across the country.
Last week, the top health insurance company disclosed that its subsidiary, Optum, was impacted by a "cybersecurity issue," leading to its digital health care payment platform, known as Change Healthcare, being knocked offline.
As a result, hospitals, pharmacies and other health care providers have either been unable to access the popular payment platform, or have purposefully shut off connections to its network to prevent the hackers from gaining further access.
UnitedHealth says that as of Monday it estimated that more than 90% of 70,000 pharmacies in the U.S. have had to change how they process electronic claims as a result of the outage.
While the company has set up a website to track the ongoing outage, reassuring customers that there are "workarounds" to ensure access to medications, the outage could last "weeks," according to a UnitedHealth executive who spoke on a conference call with cybersecurity officers, a recording of which was obtained by STAT News.
After hiring multiple outside firms, including top cybersecurity companies Mandiant and Palo Alto Networks, UnitedHealth released its conclusion that BlackCat, or AlphV, is behind the breach, a conclusion bolstered by the group itself originally claiming credit on its dark web leak site. The post has since been taken down.
"Hacked the hackers"
However, the fact that the ransomware gang may be responsible is also something of a twist.
Just a few months ago, the FBI broke into the groups' internal servers, stealing information about decryption tools for victims and seizing control of several of its websites. The U.S. government celebrated the disruption, a major operation with multiple foreign governments involved. "In disrupting the Black Cat ransomware group, the Justice Department has once again hacked the hackers," said Deputy Attorney General Lisa Monaco in a news release.
Black Cat's seeming ability to regroup and breach one of the largest health care entities in the U.S. demonstrates how challenging it is to hamper these groups long-term.
Cybercriminals frequently reassemble after experiencing setbacks, particularly when their operators are located in countries whose law enforcement agencies are lax about prosecuting their crimes.
That's especially true in Russia. While researchers have not definitively tied BlackCat to Russia or its government, they've concluded it is a Russian-speaking group. U.S. intelligence officials have spoken frequently about the Russian government's willingness to turn a blind eye to cybercrime, in exchange for the hackers' service in intelligence operations. That has been especially true during the war in Ukraine.
In addition to the health care breach, Black Cat also recently claimed to have stolen classified documents and sensitive personal data about Department of Defense employees from U.S. federal contractors.
veryGood! (2)
Related
- 'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
- Humblest Christmas tree in the world sells for more than $4,000 at auction
- Indictment against high-ranking Hezbollah figure says he helped plan deadly 1994 Argentina bombing
- Duane Davis, man charged with Tupac Shakur's killing, requests house arrest, citing health
- Jamie Foxx gets stitches after a glass is thrown at him during dinner in Beverly Hills
- Tesla’s Swedish labor dispute pits anti-union Musk against Scandinavian worker ideals
- Woman who said her murdered family didn't deserve this in 2015 is now arrested in their killings
- The IRS will waive $1 billion in penalties for people and firms owing back taxes for 2020 or 2021
- New data highlights 'achievement gap' for students in the US
- Dick Van Dyke: Forever young
Ranking
- Are Instagram, Facebook and WhatsApp down? Meta says most issues resolved after outages
- A top French TV personality receives a preliminary charge of rape and abusing authority
- What to know about abortion policy across the US heading into 2024
- No fire plans, keys left out and no clean laundry. Troubled South Carolina jail fails inspection
- New Mexico governor seeks funding to recycle fracking water, expand preschool, treat mental health
- How the markets and the economy surprised investors and economists in 2023, by the numbers
- Fans are begging for Macaulay Culkin to play Kevin McCallister in a new 'Home Alone' movie
- Lawsuit alleges Wisconsin Bar Association minority program is unconstitutional
Recommendation
A South Texas lawmaker’s 15
Abuse in the machine: Study shows AI image-generators being trained on explicit photos of children
Jury convicts boy and girl in England of murdering transgender teenager in frenzied knife attack
Federal judge orders texts, emails on Rep. Scott Perry's phone be turned over to prosecutors in 2020 election probe
Trump issues order to ban transgender troops from serving openly in the military
List of Jeffrey Epstein's associates named in lawsuit must be unsealed, judge rules. Here are details on the document release.
Mother of a child punished by a court for urinating in public refuses to sign probation terms
New 'Washington Post' CEO accused of Murdoch tabloid hacking cover-up