Source |
Recorded Future |
Identifiant |
8316109 |
Date de publication |
2023-03-06 14:01:00 (vue: 2023-03-06 23:06:38) |
Titre |
Ransomware gang posts breast cancer patients\' clinical photographs |
Texte |
The ALPHV ransomware group, also known as BlackCat, is attempting to extort a healthcare network in Pennsylvania by publishing photographs of breast cancer patients.
These clinical images, used by Lehigh Valley Health Network as part of radiotherapy to tackle malignant cells, were described as “nude photos” on the criminals' site.
Lehigh Valley Health Network disclosed on February 20 that it had been attacked by the BlackCat gang, which it described as linked to Russia, and stated that it would not pay a ransom.
“Based on our initial analysis, the attack was on the network supporting one physician practice located in Lackawanna County. We take this very seriously and protecting the data security and privacy of our patients, physicians and staff is critical,” said the network's president and chief executive, Brian Nester.
Nester added that the incident involved “a computer system used for clinically appropriate patient images for radiation oncology treatment and other sensitive information.”
At the time of the original statement, Nester said Lehigh Valley Health Network's services - including a cancer institute and a children's hospital - were not affected.
However the network's website is currently inaccessible. The Record was unable to contact the network for further comment following its listing on the ALPHV [.onion](https://en.wikipedia.org/wiki/Tor_(network)) website.
Onlookers have been revolted by the attempt to leverage the sensitivities around cancer treatment and intimate images to extort the organization.
Max Smeets, an academic at ETH Zurich - a public research university - and the director of the European Cyber Conflict Research Initiative, [wrote](https://twitter.com/Maxwsmeets/status/1632654116320075776): “This makes me so angry. I hope these barbarians will be held accountable for their heinous actions.”
"A new low. This is sickening," [wrote](https://twitter.com/rj_chap/status/1632465294580133888) malware analyst Ryan Chapman, while Nicholas Carroll, a cybersecurity professional, [said](https://twitter.com/sloppy_bear/status/1632468646873165824) the gang was “trying to set new standards in despicable.”
ALPHV itself celebrated the attack and the attention it brought.
“Our blog is followed by a lot of world media, the case will be widely publicized and will cause significant damage to your business. Your time is running out. We are ready to unleash our full power on you!”
Numerous healthcare organizations have been attacked by ransomware gangs in recent months. The criminal industry persists because of victims who pay, sometimes because their businesses face an existential threat, and sometimes to avoid the negative publicity.
Medibank, one of Australia's largest health insurance providers, stated last November that it would not be making a [ransom payment](https://therecord.media/medibank-says-it-will-not-pay-ransom-in-hack-that-impacted-9-7-million-customers/) after hackers gained access to the data of 9.7 million current and former customers, including 1.8 million international customers living abroad.
The information included sensitive healthcare claims data for around 480,000 individuals, including information about drug addiction treatments and abortions. Outrage at the attack prompted the government to [consider banning](https://therecord.media/australia-to-consider-banning-ransomware-payments/) ransomware payments in a bid to undermine the industry.
Back in January, the hospital technology giant [NextGen Healthcare](https://therecord.media/electronic-health-record-giant-nextgen-dealing-with-cyberattack/) said it was responding to a cyberattack after ALPHV added the company to its list of victims. |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
000 480 abortions about abroad academic access accountable actions added addiction affected after alphv also analysis analyst angry appropriate are around attack attacked attempt attempting attention australia avoid back banning barbarians bear/status/1632468646873165824 because been bid blackcat blog breast brian brought business businesses cancer carroll case cause celebrated cells chap/status/1632465294580133888 chapman chief children claims clinical clinically com/maxwsmeets/status/1632654116320075776 com/rj com/sloppy comment company computer conflict consider contact county criminal criminals critical current currently customers customers/ cyber cyberattack cyberattack/ cybersecurity damage data dealing described despicable director disclosed drug eth european executive existential extort face february followed following former full further gained gang gangs giant government group hack hackers had have health healthcare heinous held hope hospital however https://en https://therecord https://twitter images impacted inaccessible incident included including individuals industry information initial initiative institute insurance international intimate involved its itself january known lackawanna largest last lehigh leverage linked list listing living located lot low makes making malignant malware max media media/australia media/electronic media/medibank medibank million months negative nester network new nextgen nicholas not november numerous oncology one onion onlookers org/wiki/tor organization organizations original other out outrage part patient patients pay payment payments payments/ pennsylvania persists photographs photos” physician physicians posts power practice president privacy professional prompted protecting providers public publicity publicized publishing radiation radiotherapy ransom ransomware ready recent record research responding revolted running russia ryan said says security sensitive sensitivities seriously services set sickening significant site smeets sometimes staff standards stated statement supporting system tackle take technology these threat time treatment treatments unable undermine university unleash used valley very victims website which who widely wikipedia will world would wrote your zurich “based “nude “our “this “trying |
Tags |
Ransomware
Malware
|
Stories |
|
Move |
|