Many have written about how to mitigate the risks posed by malicious insiders. But what about the vulnerabilities associated with Careless Users? What actions can healthcare organizations take to better prevent a breach caused by internal negligence? The Clearwater CyberIntelligence® Institute analyzed the Critical and High risks found in Clearwater’s IRM|Analysis™ database, specifically focusing on…
The University of North Carolina- Chapel Hill School of Medicine Notifying Patients After 2018 Phishing Incident
Some readers may have trouble accessing a notice from the School of Medicine at the University of North Carolina — Chapel Hill due to an issue with Chrome, so I’m embedding the whole notification below. TL;DR version: some employees fell for a phishing attack and their email accounts may have been accessed between May 17,…
TX: PNGISD technology held for ransom
Mary Meaux reports: Port Neches-Groves Independent School District was hit by ransomware, causing the disruption of all technology connections on Tuesday. Assistant superintendent Julie Gauthier provided a statement about the cyber security attack, saying the district is working with local law enforcement and forensic and cyber security specialists to remedy the situation. Read more on…
CT: Starling Physicians Warns Patients of Data Breach
NBC reports: According to an announcement released Tuesday, Starling was the target of a cyber-phishing attack on February 8. When the Connecticut-based healthcare group learned of the breach, they secured the affected email accounts and hired a forensic security firm. On September 12, investigation found that the email accounts affected by the attack contained information…
Mexico’s Pemex Oil Suffers Ransomware Attack, $4.9 Million Demanded
Lawrence Abrams reports: Mexico’s state-owned oil company, Pemex, has suffered a DoppelPaymer ransomware attack that demanded $4.9 million USD in order to decrypt their files. On Sunday, November 10th, Pemex was hit with a ransomware attack that the company states affected less than 5% of their computers. Workers reported, though, that internal memos told them not to initially…
Israel Extradites Accused Russian Cybercriminal to U.S. (Updated)
Felicia Schwartz and Dustin Volz report: Israel said Tuesday that alleged Russian hacker Alexei Burkov, whom the Kremlin attempted to recover in an unusual prisoner exchange, was extradited to the U.S. to stand trial for a range of hacking-related crimes, including fraud, identity theft, computer intrusion and money laundering. According to the American request for…