Lorenzo Franceschi-Bicchierai reports: Russian hacker Mikhail Matveev, also known on the internet as “Wazawaka” and “Boriselcin,” is wanted by the FBI, which is offering a $10 million reward for information that could lead to his arrest, and has been put on a U.S. sanctions list. But, according to Matveev, his life hasn’t changed much since he…
Author: Dissent
HC3: Analyst Note: LokiBot Malware
Report: 202309291200 Executive Summary Active since 2015 and among the most prevalent and persistent strains of malware families since 2018, LokiBot has matured over time to target multi-sector industries. Despite its apolitical targeting of critical infrastructure, the malware’s adverse effect on the Healthcare and Public Health (HPH) sector shows its reach. In March 2020, a…
Aretis Health LLC notifies patients of 50 entities about MOVEit breach
Add Aretis Health LLC to the list of entities affected by the MOVEit breach. Aretis performs billing functions for NorthStar Anesthesia, and made notification to patients and HHS on behalf of the following entities: AmSol Physicians of Elkin, NC, PLLC Anesthesia Company of Houston, PLLC Anesthesia Resources Management Solutions, Inc Coronado Anesthesia, PLLC Digestive Health…
ECHN cyberattack compromised Social Security numbers, financial info and patients’ medical records
Eric Bedner reports: The cyberattack against the Eastern Connecticut Health Network in August resulted in the theft of employee and patient names and Social Security numbers, as well as patients’ confidential health and financial information, according to an attorney representing Prospect Medical Holdings — ECHN’s parent company. In a letter to the Connecticut attorney general’s office on…
Fauquier County Public Schools listed by LockBit (1)
Well, this is a bit different. Did Fauquier County Public Schools in Virginia contribute to its own attack by noting employees could use free online SMS MFA websites for folks who don’t want to use a personal phone number for 2FA/MFA? It’s something to think about. h/t, Brett Callow Update of October 20: Fauquier County…
Indiana attorney general sues provider over violation of consumer protection, privacy laws
Abigail Ruhman reports: Indiana Attorney General Todd Rokita is suing a northwest Indiana medical office over a ransomware event that put personal and protected health information at risk. The lawsuit alleges the provider was aware of security concerns before the data breach. The lawsuit filed last week against CarePointe — an ear, nose, throat, sinus and…