HHS Responds to Change Healthcare Cyberattack with New Flexibilities for Affected Providers
The Department of Health and Human Services (HHS) has issued a statement about the February 2024 Blackcat ransomware attack on UnitedHealth Group-owned Change Healthcare. The attack took more than 100 of Change Healthcare’s systems out of action, which has had far-reaching consequences for the providers that rely on those systems for checking insurance coverage, submitting claims, and getting paid. Several industry groups wrote to the HHS requesting assistance for their members, who are experiencing severe cash flow problems as they have been unable to receive payments without Change Healthcare’s systems. UnitedHealth Group has set up a temporary financial assistance program to help providers who have been unable to receive payments, but the move has been criticized by industry groups due to the limited eligibility and onerous terms. The HHS said it recognized the impact the cyberattack has had on healthcare operations nationwide and that its first priority is to help coordinate efforts to avoid disruptions to care. The HHS is in regular contact with UnitedHealth Group leadership...
Personal Touch Holding Corp. Settles Class Action Data Breach Lawsuit
Personal Touch Holding Corp. has received preliminary approval for a settlement to resolve a class action lawsuit that was filed following a January 2021 ransomware attack and data breach that affected 753,107 patients. The Lake Success, NY-based provider of home health services operates around 30 Personal Touch Home Care subsidiaries in more than half a dozen U.S. states. In January 2021, a ransomware group gained access to cloud-stored business records and the data of 29 of its subsidiaries. Initial access was gained when an employee responded to a phishing email and downloaded malware. Individuals who had previously received services from Personal Touch or its subsidiaries had their names, addresses, telephone numbers, dates of birth, Social Security numbers, financial information, including check copies, credit card numbers, bank account information, medical treatment information, health insurance card, health plan benefit numbers, and medical record numbers compromised in the attack. A class action lawsuit – Everetts v. Personal Touch Holding Corp. – was filed in...
Blackcat Affiliate Behind Change Healthcare Ransomware Claims Group Stole $22 Million Ransom
The ALPHV/Blackcat ransomware group appears to have shut down its ransomware-as-a-service (RaaS) operation, indicating there may be an imminent rebrand. The group claims to have shut down its servers, its ransomware negotiation sites are offline, and a spokesperson for the group posted a message, “Everything is off, we decide.” A status message of “GG” was later added and ALPHV/Blackcat claimed that their operation was shut down by law enforcement and said it would be selling its source code. Security experts disagree and say there is clear evidence that this is an exit scam, where the group refuses to pay affiliates their cut of the ransom payments and pockets all the funds. ALPHV/Blackcat is a ransomware-as-a-service operation where affiliates are used to conduct attacks and are paid a percentage of the ransoms they generate. Affiliates typically receive around 70% of any ransoms they generate and the ransomware group takes the rest. Following the disruption of the Blackcat operation by law enforcement in December 2023, Blackcat has been trying to recruit...
235,000 Individuals Affected by Yakima Valley Radiology Data Breach
Yakima Valley Radiology has suffered a data breach that has affected 235,249 individuals. Data breaches have also been reported by Employee Benefits Corporation of America, Benefit Design Group, and Lena Pope Home. Yakima Valley Radiology Yakima Valley Radiology in Washington has recently notified 235,249 individuals that there has been unauthorized access to a limited amount of patient data. The breach was detected on August 18, 2023, and third-party forensics experts were engaged to investigate the breach. Yakima Valley Radiology said unauthorized individuals gained access to its network on August 18, 2023, and cybersecurity professionals were engaged to investigate the breach. Considerable time and effort were put into determining what information had been exposed and which individuals had been affected. On January 31, 2024, it was confirmed that “a limited amount of personal information” was removed from its network, which for some individuals included names and Social Security numbers. Those individuals have been offered complimentary credit monitoring services....
Healthcare Experiences More Third-Party Data Breaches Than Any Other Sector
A recent analysis of data breaches by Security Scorecard for its Global Third-Party Cybersecurity Breaches Report found healthcare was the worst affected industry with the highest volume of third-party breaches, followed by financial services. More than one-quarter (28%) of all breaches occurred at healthcare organizations, with financial services the second most targeted sector (16%). 35% of all reported healthcare data breaches occurred at third-party vendors, with financial services having the second highest percentage of third-party breaches (16%). Across all industry sectors, 29% of data breaches occurred at third parties. 98% of organizations had at least one relationship with a vendor that had previously experienced a data breach. The research for the study was conducted by SecurityScorecard’s Threat Research, Intelligence, Knowledge, and Engagement (STRIKE) Team. The data was collected through an internally developed feed that collects information on data breaches from publicly available sources. The data corresponds to data breaches that were made public in Q4, 2023, not...



