Following a significant breach in February, Change Healthcare, a company responsible for processing claims for healthcare giant UnitedHealth Group, is reportedly under threat from...
Following a significant breach in February, Change Healthcare, a company responsible for processing claims for healthcare giant UnitedHealth Group, is reportedly under threat from a new ransomware attack. Wired magazine reported that a group known as RansomHub has claimed to possess four terabytes of data stolen from Change Healthcare. The group has threatened to sell the data unless a ransom is paid. Notably, RansomHub denies any affiliation with AlphaV, the group that claimed responsibility for the previous breach.
RansomHub's demand for ransom remains unspecified, leaving Change Healthcare in a precarious position. Despite initial skepticism, RansomHub provided Wired with several screenshots allegedly showcasing patient records and a data-sharing contract for UnitedHealth, suggesting the severity of the situation. Wired quoted a RansomHub contact who emphasized the gravity of the breach, urging skeptics to recognize the magnitude and sensitivity of the compromised data.
PYMNTS reached out to UnitedHealth for comment but has yet to receive a response. The initial breach discovered in February caused widespread disruptions across the healthcare sector, highlighting the vulnerability of critical infrastructure to cyber threats.
Ransomware attacks have become increasingly prevalent, with ransom payments exceeding $1 billion in 2023, according to research from blockchain data firm Chainalysis. In response to the growing threat, bipartisan efforts are underway to address ransomware attacks. The "Ransomware and Financial Stability Act," reintroduced by House Financial Services Committee Chairman Patrick McHenry and Rep. Brittany Pettersen, aims to provide deterrence against hackers and guidance for financial institutions facing ransomware attacks.
The proposed legislation focuses on critical financial infrastructure, including financial market utilities and large securities exchanges. It mandates that institutions notify the Treasury Department before making ransomware payments and prohibits payments exceeding $100,000 unless authorized by law enforcement or the president. The bill aims to equip institutions with a framework to respond effectively to ransomware attacks and safeguard against future threats.