The Mālama I Ke Ola Health Center Team discovered a breach on May 7 that they initially described as an IT or tech incident. They have now made it clearer that this was a cyberattack. In a statement on their website on May 23, they write: Aloha Patients & Community We recently learned of an…
Category: U.S.
United Urology Group appears to be a victim of a ransomware attack; some patient data already leaked
United Urology Group describes itself as a national network of urology specialists with corporate headquarters in Maryland. Their network includes Arizona Urology Specialists Phoenix, Arizona Urology Specialists Tucson, Chesapeake Urology, Colorado Urology, and Tennessee Urology. On May 23, RansomHouse threat actors claimed to have encrypted their system on May 4 and exfiltrated about 300 GB…
Spyware found on US hotel check-in computers
Zack Whittaker reports: A consumer-grade spyware app has been found running on the check-in systems of at least three Wyndham hotels across the United States, TechCrunch has learned. The app, called pcTattletale, stealthily and continually captured screenshots of the hotel booking systems, which contained guest details and customer information. Thanks to a security flaw in…
100 Groups Urge Feds to Put UHG on Hook for Breach Notices
Marianne Kolbasuk McGee reports: More than 100 medical associations and industry groups representing tens of thousands of U.S. doctors and healthcare professionals have banded together to urge federal regulators to hold Change Healthcare responsible for breach notifications related to a massive February ransomware attack. The groups in a letter Monday asked the U.S. Department of Health and…
More than one year later, New Jersey school district reveals data breach with sensitive info
NJ 101.5 FM reports: A Monmouth County school district hid details about a cyber-attack for over a year. Only now are they revealing student’s sensitive personal data was compromised. Officials at Shore Regional High School District in West Long Branch began notifying families on Friday. On Monday they issued a public statement. […] Shore Regional…
Russian Access Broker “FlankerWWH” Indicted for Cybercrime Activities in New Jersey
A Russian citizen has been indicted for working as an “access broker” and selling unauthorized access to computer networks, including a victim company in New Jersey, U.S. Attorney Philip R. Sellinger, District of New Jersey. Evgeniy Doroshenko, 31, aka “Eugene Doroshenko”, aka “FlankerWWH,” aka “Flanker,” of Astrkhan, Russia, is charged by indictment with one count…