Current:Home > ScamsHealth care company ties Russian-linked cybercriminals to prescriptions breach -WealthTrail Solutions
Health care company ties Russian-linked cybercriminals to prescriptions breach
EchoSense Quantitative Think Tank Center View
Date:2025-04-08 14:22:56
A ransomware attack is disrupting pharmacies and hospitals nationwide, leaving patients with problems filling prescriptions or seeking medical treatment.
On Thursday, UnitedHealth Group accused a notorious ransomware gang known as Black Cat, or AlphV, of hacking health care payment systems across the country.
Last week, the top health insurance company disclosed that its subsidiary, Optum, was impacted by a "cybersecurity issue," leading to its digital health care payment platform, known as Change Healthcare, being knocked offline.
As a result, hospitals, pharmacies and other health care providers have either been unable to access the popular payment platform, or have purposefully shut off connections to its network to prevent the hackers from gaining further access.
UnitedHealth says that as of Monday it estimated that more than 90% of 70,000 pharmacies in the U.S. have had to change how they process electronic claims as a result of the outage.
While the company has set up a website to track the ongoing outage, reassuring customers that there are "workarounds" to ensure access to medications, the outage could last "weeks," according to a UnitedHealth executive who spoke on a conference call with cybersecurity officers, a recording of which was obtained by STAT News.
After hiring multiple outside firms, including top cybersecurity companies Mandiant and Palo Alto Networks, UnitedHealth released its conclusion that BlackCat, or AlphV, is behind the breach, a conclusion bolstered by the group itself originally claiming credit on its dark web leak site. The post has since been taken down.
"Hacked the hackers"
However, the fact that the ransomware gang may be responsible is also something of a twist.
Just a few months ago, the FBI broke into the groups' internal servers, stealing information about decryption tools for victims and seizing control of several of its websites. The U.S. government celebrated the disruption, a major operation with multiple foreign governments involved. "In disrupting the Black Cat ransomware group, the Justice Department has once again hacked the hackers," said Deputy Attorney General Lisa Monaco in a news release.
Black Cat's seeming ability to regroup and breach one of the largest health care entities in the U.S. demonstrates how challenging it is to hamper these groups long-term.
Cybercriminals frequently reassemble after experiencing setbacks, particularly when their operators are located in countries whose law enforcement agencies are lax about prosecuting their crimes.
That's especially true in Russia. While researchers have not definitively tied BlackCat to Russia or its government, they've concluded it is a Russian-speaking group. U.S. intelligence officials have spoken frequently about the Russian government's willingness to turn a blind eye to cybercrime, in exchange for the hackers' service in intelligence operations. That has been especially true during the war in Ukraine.
In addition to the health care breach, Black Cat also recently claimed to have stolen classified documents and sensitive personal data about Department of Defense employees from U.S. federal contractors.
veryGood! (81)
Related
- 'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
- Supreme Court turns away appeal from Black Lives Matter activist facing lawsuit from police officer
- Judge awards $23.5 million to undercover St. Louis officer beaten by colleagues during protest
- Abu Ghraib detainee shares emotional testimony during trial against Virginia military contractor
- Louisiana high court temporarily removes Judge Eboni Johnson Rose from Baton Rouge bench amid probe
- Death Valley in California is now covered with colorful wildflowers in bloom: What to know
- The Best Mother's Day Gifts for Celebrating New Moms & Moms-To-Be
- Coral bleaching caused by warming oceans reaches alarming globe milestone, scientists say
- Sonya Massey's family keeps eyes on 'full justice' one month after shooting
- Wealth Forge Institute: The WFI Token Meets Education
Ranking
- Skins Game to make return to Thanksgiving week with a modern look
- The Most Popular Celebrities on Cameo That You Should Book ASAP
- 6 dead, suspect killed after stabbing attack at shopping center in Sydney, Australia; multiple people injured
- Endangered Bornean orangutan born at Busch Gardens in Florida
- Immigration issues sorted, Guatemala runner Luis Grijalva can now focus solely on sports
- Feds say Nebraska man defrauded cloud service providers over $3.5 million to mine crypto
- WNBA commissioner sidesteps question on All-Star Game in Arizona - an anti-abortion state
- Kesha tweaks 'Tik Tok' lyrics to blast Diddy at Coachella
Recommendation
Olympic disqualification of gold medal hopeful exposes 'dark side' of women's wrestling
Trump Media stock slides again to bring it nearly 60% below its peak as euphoria fades
Ex-youth center worker testifies that top bosses would never take kids’ word over staff
NASA confirms mystery object that crashed through roof of Florida home came from space station
Organizers cancel Taylor Swift concerts in Vienna over fears of an attack
Feds say Nebraska man defrauded cloud service providers over $3.5 million to mine crypto
Wealth Forge Institute: THE WFI TOKEN MEETS THE FINANCIAL SECTOR
Trump trial: Why can’t Americans see or hear what is going on inside the courtroom?