UnitedHealth's 'egregious negligence' led to Change Healthcare ransomware infection

  • 📰 TheRegister
  • ⏱ Reading Time:
  • 12 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 8%
  • Publisher: 61%

Health Health Headlines News

Health Health Latest News,Health Health Headlines

'I'm blown away by the fact that they weren't using MFA'

The cybersecurity practices that led up to the stunning Change Healthcare ransomware infection indicate"egregious negligence" on the part of parent company UnitedHealth, according to Tom Kellermann, SVP of cyber strategy at Contrast Security.to US lawmakers about how ALPHV's affiliates used stolen credentials to remotely access a Citrix portal that didn't have multi-factor authentication enabled. You can replay our chat below..

He likened paying extortion demands to"sanctions evasion." In addition to funding criminal activities, it also doesn't guarantee that stolen data won't be leaked, which UnitedHealth found out the hard way.

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 67. in HEALTH

Health Health Latest News, Health Health Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Change Healthcare faces second ransomware dilemma weeks after ALPHV attackTheories abound over who's truly responsible
Source: TheRegister - 🏆 67. / 61 Read more »

Change Healthcare Faces Second Ransomware AttackChange Healthcare is being extorted by a second ransomware gang, who claims to have sensitive data and is demanding a ransom payment within 12 days.
Source: TheRegister - 🏆 67. / 61 Read more »

Calls for a 'change of culture' amid healthcare trust concernsThe trust treats some of the county’s most vulnerable patients, but the CQC said they faced long waiting lists, a lack of inpatient beds and difficulty accessing crisis care.
Source: nottslive - 🏆 96. / 52 Read more »

Change Healthcare’s ransomware attack costs edge toward $1B so farFirst glimpse at attack financials reveals huge pain
Source: TheRegister - 🏆 67. / 61 Read more »

Cyberattack could cost UnitedHealth Group up to $1.6B this yearUnitedHealth Group spent about $872 million during the first quarter responding to the cyberattack at its Change Healthcare division and expects that full-year costs could reach $1.6 billion.
Source: medical_xpress - 🏆 101. / 51 Read more »

An Arm and a Leg: The hackWhen Change Healthcare, a subsidiary of UnitedHealth Group, got hit by a cyberattack this winter, a big chunk of the nation's doctors, pharmacists, hospitals, and therapists stopped getting paid.
Source: NewsMedical - 🏆 19. / 71 Read more »