The Week in Ransomware – March 1st 2024 – Healthcare under siege

March 1, 2024 at 03:36PM Relentless ransomware attacks on US healthcare, affecting patient care and access to prescription drugs. Notably, BlackCat’s attack on Change Healthcare caused significant disruption, forcing some patients to pay full price for medications and impacting hospitals’ financial abilities. Other ransomware operations such as Rhysida and Lockbit continue to target the healthcare … Read more

Ransomware gangs are paying attention to infostealers, so why aren’t you?

February 29, 2024 at 11:37AM Cybercriminals are increasingly using infostealers to acquire online account passwords and sensitive data to gain access to organizations’ IT environments for deploying ransomware. Notorious ransomware gangs such as LockBit and Trickbot/Conti are interested in obtaining and using infostealers, while the market for stolen credentials gathered by these malware has surged. … Read more

Ransomware-as-a-Service Spawns Wave of Cyberattacks in Middle East & Africa

February 29, 2024 at 09:32AM Ransomware-as-a-service (RaaS) affiliates are driving a surge in ransomware attacks in the Middle East and Africa. Group-IB’s report shows a 68% increase in data leaks from 205 companies, with financial services as the primary target. Organizations in the region, particularly those with less mature security controls, are vulnerable to operational … Read more

BlackCat Ransomware Gang Claims Attack on Change Healthcare

February 29, 2024 at 07:57AM The Alphv/BlackCat ransomware group claimed responsibility for a cyberattack on Change Healthcare’s systems, disrupting services for over a week. The attack resulted in massive healthcare transaction outages and the theft of 6 Tb of data, including health records, payment information, and personal data. UnitedHealth Group confirmed it was a cybercrime … Read more

Ransomware gang claims they stole 6TB of Change Healthcare data

February 28, 2024 at 02:37PM The BlackCat/ALPHV ransomware gang claims responsibility for a cyberattack on Optum, a UnitedHealth Group subsidiary, causing an ongoing outage on the Change Healthcare platform. They allege stealing 6TB of sensitive data, including medical records, from thousands of healthcare providers and insurance companies. The FBI, CISA, and HHS warned that BlackCat … Read more

LockBit ransomware returns to attacks with new encryptors, servers

February 28, 2024 at 01:31PM The LockBit ransomware gang faced a disruption by law enforcement last week but has quickly resumed attacks with updated encryption and a new data leak site. They retaliated against the agencies involved, claiming to strengthen their security measures. LockBit is recruiting experienced pentesters, indicating a potential increase in future attacks. … Read more

Epic Games: “Zero evidence” we were hacked by Mogilevich gang

February 28, 2024 at 11:21AM Epic Games denies cyberattack claim by Mogilevich extortion group, citing lack of evidence. The group purports to have breached several organizations and is allegedly selling data, requiring proof of funds to share samples. Security researchers suspect a scam due to lack of evidence. Mogilevich also claims to be a Ransomware-as-a-Service … Read more

Hackers Steal Personal Information From Pharma Giant Cencora

February 28, 2024 at 08:51AM Cencora, a global pharmaceutical solutions provider, disclosed a cyberattack resulting in stolen personal information. The breach, identified on February 21, is being investigated with the assistance of law enforcement and cybersecurity experts. Cencora stated the incident has not materially impacted its operations. The company’s size and revenue make it an … Read more

FBI Warns U.S. Healthcare Sector of Targeted BlackCat Ransomware Attacks

February 28, 2024 at 08:39AM The U.S. government warns of BlackCat ransomware attacks targeting healthcare, offering a $15 million reward for information. Law enforcement’s takedown of BlackCat suffered a setback, leading to attacks on critical infrastructure organizations. Threat actors leverage security flaws in remote access software, impacting compromised organizations globally. Ransomware groups employ sophisticated tactics, … Read more

FBI, CISA warn US hospitals of targeted BlackCat ransomware attacks

February 27, 2024 at 05:32PM The FBI, CISA, and HHS have issued a warning about ALPHV/Blackcat ransomware attacks targeting U.S. healthcare organizations. The BlackCat cybercrime gang, linked to over 60 breaches and $300 million in ransoms, primarily targets the healthcare sector. Mitigation measures are recommended, with a focus on cybersecurity safeguards for critical infrastructure and … Read more