Current:Home > FinanceHealth care company ties Russian-linked cybercriminals to prescriptions breach -RiskWatch
Health care company ties Russian-linked cybercriminals to prescriptions breach
View
Date:2025-04-15 08:37:15
A ransomware attack is disrupting pharmacies and hospitals nationwide, leaving patients with problems filling prescriptions or seeking medical treatment.
On Thursday, UnitedHealth Group accused a notorious ransomware gang known as Black Cat, or AlphV, of hacking health care payment systems across the country.
Last week, the top health insurance company disclosed that its subsidiary, Optum, was impacted by a "cybersecurity issue," leading to its digital health care payment platform, known as Change Healthcare, being knocked offline.
As a result, hospitals, pharmacies and other health care providers have either been unable to access the popular payment platform, or have purposefully shut off connections to its network to prevent the hackers from gaining further access.
UnitedHealth says that as of Monday it estimated that more than 90% of 70,000 pharmacies in the U.S. have had to change how they process electronic claims as a result of the outage.
While the company has set up a website to track the ongoing outage, reassuring customers that there are "workarounds" to ensure access to medications, the outage could last "weeks," according to a UnitedHealth executive who spoke on a conference call with cybersecurity officers, a recording of which was obtained by STAT News.
After hiring multiple outside firms, including top cybersecurity companies Mandiant and Palo Alto Networks, UnitedHealth released its conclusion that BlackCat, or AlphV, is behind the breach, a conclusion bolstered by the group itself originally claiming credit on its dark web leak site. The post has since been taken down.
"Hacked the hackers"
However, the fact that the ransomware gang may be responsible is also something of a twist.
Just a few months ago, the FBI broke into the groups' internal servers, stealing information about decryption tools for victims and seizing control of several of its websites. The U.S. government celebrated the disruption, a major operation with multiple foreign governments involved. "In disrupting the Black Cat ransomware group, the Justice Department has once again hacked the hackers," said Deputy Attorney General Lisa Monaco in a news release.
Black Cat's seeming ability to regroup and breach one of the largest health care entities in the U.S. demonstrates how challenging it is to hamper these groups long-term.
Cybercriminals frequently reassemble after experiencing setbacks, particularly when their operators are located in countries whose law enforcement agencies are lax about prosecuting their crimes.
That's especially true in Russia. While researchers have not definitively tied BlackCat to Russia or its government, they've concluded it is a Russian-speaking group. U.S. intelligence officials have spoken frequently about the Russian government's willingness to turn a blind eye to cybercrime, in exchange for the hackers' service in intelligence operations. That has been especially true during the war in Ukraine.
In addition to the health care breach, Black Cat also recently claimed to have stolen classified documents and sensitive personal data about Department of Defense employees from U.S. federal contractors.
veryGood! (13912)
Related
- South Korea's acting president moves to reassure allies, calm markets after Yoon impeachment
- After Mavs partnership stalled, Luka Doncic and Kristaps Porzingis duel in NBA Finals
- RHOC's Shannon Beador and Alexis Bellino Face Off in Shocking Season 18 Trailer
- Today is last day Walmart shoppers can claim up to $500. Here's how.
- Tarte Shape Tape Concealer Sells Once Every 4 Seconds: Get 50% Off Before It's Gone
- Walmart announces annual bonus payments for full- and part-time US hourly workers
- Child and 2 adults killed on railroad bridge when struck by train in Virginia
- Powerball winning numbers for June 5 drawing: Jackpot climbs to $206 million
- Buckingham Palace staff under investigation for 'bar brawl'
- Lady Gaga addresses pregnancy rumors with cheeky TikTok: 'Register to vote'
Ranking
- The Grammy nominee you need to hear: Esperanza Spalding
- Gilgo Beach suspect charged in more slayings; new evidence called a 'blueprint' to kill
- US antitrust enforcers will investigate leading AI companies Microsoft, Nvidia and OpenAI
- Dakota Fanning Reveals Unconventional Birthday Gift Tom Cruise Has Given Her Every Year Since She Was 12
- Scoot flight from Singapore to Wuhan turns back after 'technical issue' detected
- 'The Town apologizes': Woman left in police cruiser hit by train gets settlement
- Adam Levine is returning to 'The Voice' for Season 27: See the full coaching panel
- Judge won’t block North Dakota’s ban on gender-affirming care for children
Recommendation
Off the Grid: Sally breaks down USA TODAY's daily crossword puzzle, Hi Hi!
Jelly Roll and Wife Bunnie XO Share Their Plans to Have a Baby Through IVF
Cucumbers linked to salmonella outbreak that has spread to 25 states
D-Day paratroopers honored by thousands, including CBS News' Charlie D'Agata, reenacting a leap into Normandy
'Malcolm in the Middle’ to return with new episodes featuring Frankie Muniz
D-Day 80th anniversary: See historical photos from 1944 invasion of Normandy beaches
Fashion has always been political. Are celebrities, designers at a turning point?
Crew Socks Are Gen Z’s Latest Fashion Obsession – Here’s How to Style the Trend
Like
- Civic engagement nonprofits say democracy needs support in between big elections. Do funders agree?
- Women codebreakers knew some of the biggest secrets of WWII — including plans for the D-Day invasion. But most took their stories to the grave.
- 2 more charged in betting scandal that spurred NBA to bar Raptors’ Jontay Porter for life