Jessica Lyons Hardcastle reports: LabMD, the embattled and now defunct cancer-testing company, will get another chance at suing security firm Tiversa for defamation following an appeals court ruling. The testing laboratory has long alleged that: Tiversa illegally obtained a 1,178-page computer file containing confidential data on more than 9,000 LabMD patients back in 2008; lied…
Category: Health Data
HC3 Threat Profile: Evil Corp
The following is not a paragraph from a story about fictional cybercriminals called Evil Corp. The following paragraph is from a white paper released this week by the U.S. Department of Health & Human Services because there is a criminal enterprise known as Evil Corp that poses a serious threat to the healthcare sector. Typographical…
CorrectHealth notifies employees of breach in 2021; makes changes
CorrectHealth in Georgia is a private provider of healthcare services to incarcerated individuals. In November 2021, they discovered a data breach involving some employees’ email accounts. They did not reveal when the breach occurred, and it seems it took them until July 2022 to investigate and identify the 54,066 individuals they are notifying. Nothing on…
Massive cyberattack leads to class action suit against provider chain Avamere
John Hall reports: Attorneys representing a potentially large group of residents and employees of nursing home behemoth Avamere Holdings announced they have filed a class action suit accusing the long-term care provider of failing to protect its residents and staff from a massive cyberattack. The operator faces the class-action lawsuit over a data breach believed to have affected more…
EmergeOrtho notifying 75,200 patients about ransomware incident
EmergeOrtho in North Carolina has started sending notification letters to patients whose protected health information may have been accessed during a ransomware attack in May. According to a notification template seen by DataBreaches, EmergeOrtho discovered and blocked a ransomware attack on May 18. Their letter does not specifically state whether any files were encrypted, and…
New York medical practices hit by “Bl00dy Ransomware Gang”
Is “Bl00dy Ransomware Gang” a new ransomware group on the scene, a rebrand, or neither? In July, a new channel appeared on Telegram called the “Bl00dy Ransomware Gang.” In August, information about alleged victims started to appear. So far, the gang has leaked some data allegedly from three victims in two incidents. In each case,…