

UnitedHealth paid ransom to bad actors, says patient data compromised
source link: https://www.cnbc.com/2024/04/22/unitedhealth-paid-ransom-to-bad-actors-says-patient-data-was-compromised-in-change-healthcare-cyberattack.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

UnitedHealth paid ransom to bad actors, says patient data was compromised in Change Healthcare cyberattack
In this article

UnitedHealth Group on Monday said it paid ransom to cyberthreat actors to try and protect patient data, following the February cyberattack on its subsidiary Change Healthcare. The company also confirmed that files containing personal information were compromised in the breach.
“This attack was conducted by malicious threat actors, and we continue to work with the law enforcement and multiple leading cyber security firms during our investigation,” UnitedHealth told CNBC in a statement. “A ransom was paid as part of the company’s commitment to do all it could to protect patient data from disclosure.”
The company did not specify the ransom payment amount.
UnitedHealth, which has more than 152 million customers, said it has also determined that the cyberthreat actors accessed files containing protected health information and personally identifiable information, according to a release Monday. The files “could cover a substantial proportion of people in America,” the release said.
Change Healthcare offers payment and revenue cycle management tools. The company facilitates more than 15 billion transactions annually, and 1 in every 3 patient records passes through its systems. This means even patients who are not UnitedHealth customers could have been affected by the attack.
UnitedHealth said in the release that 22 screenshots, allegedly of the compromised files, have been uploaded to the dark web. The company said no other data has been published, and it has not seen evidence that doctors’ charts or full medical histories were accessed in the breach.
“We know this attack has caused concern and been disruptive for consumers and providers and we are committed to doing everything possible to help and provide support to anyone who may need it,” UnitedHealth CEO Andrew Witty said in the release.
UnitedHealth said that concerned patients can visit a dedicated website for access to resources. The company has launched a call center that will offer free identity theft protections and credit monitoring for two years, the release said.
The call center will not be able to offer any details about individual data impact given the “ongoing nature and complexity of the data review,” UnitedHealth said.
Recommend
-
9
May 13, 2021 ...
-
7
PoliticsColonial Pipeline paid $5 million ransom to hackersPublished Thu, May 13 20212:05 PM EDTUpdated 6 Hours Ago
-
12
Colonial Pipeline Paid a $5M Ransom—and Kept a Vicious Cycle TurningStopping payments would go a long way to stopping ransomware. But the choice is never quite so easy.To pay or not t...
-
8
US fuel pipeline 'paid hackers $5m in ransom'Published3 days agoimage copyrightColonial PipelineA major US fuel pipeline has reportedly paid cyber-criminal gang DarkSide nearly...
-
5
June 7, 2021 ...
-
8
PoliticsU.S. recovers $2.3 million in bitcoin paid in the Colonial Pipeline ransomPublished Mon, Jun 7 20212:41 PM EDTUpdated Mon, Jun 7 20216:55 PM E...
-
5
Wednesday, 27 October 2021 16:08 Four measures to prevent being held to ransom by malicious actors and cyber insurance By Brad Newton Brad Newton, ANZ Managing Direc...
-
7
Premium ...
-
8
ION’s Woes Far From Over Even If It Paid R...
-
2
TechUnitedHealth Group has paid more than $3 billion to providers follow...
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK