Medical insurance large UnitedHealth Group has confirmed {that a} ransomware assault on its well being tech subsidiary Change Healthcare earlier this 12 months resulted in an enormous theft of People’ non-public healthcare information.
UnitedHealth mentioned in a press release on Monday {that a} ransomware gang took recordsdata containing private information and guarded well being info that it says might “cowl a considerable proportion of individuals in America.”
The medical insurance large didn’t say what number of People are affected however mentioned the info overview was “prone to take a number of months” earlier than the corporate would start notifying people that their info was stolen within the cyberattack.
Change Healthcare processes insurance coverage and billing for tons of of hundreds of hospitals, pharmacies and medical practices throughout the U.S. healthcare sector; it has entry to large quantities of well being info on about half of all People.
UnitedHealth mentioned it had not but seen proof that docs’ charts or full medical histories have been exfiltrated from its methods.
The admission that hackers stole People’ well being information comes per week after a brand new hacking group started publishing parts of the stolen information in an effort to extort a second ransom demand from the corporate.
The gang, which calls itself RansomHub, printed a number of recordsdata on its darkish net leak web site containing private details about sufferers throughout an array of paperwork, a few of which included inner recordsdata associated to Change Healthcare. RansomHub mentioned it might promote the stolen information until Change Healthcare pays a ransom.
RansomHub is the second gang to demand a ransom from Change Healthcare. The well being tech large reportedly paid $22 million to a Russia-based legal gang known as ALPHV in March, which then disappeared, stiffing the affiliate that carried out the info theft out of their portion of the ransom.
RansomHub claimed in its put up alongside the printed stolen information that “we’ve got the info and never ALPHV.”
In its assertion Monday, UnitedHealth acknowledged the publication of among the recordsdata however stopped wanting claiming possession of the paperwork. “This isn’t an official breach notification,” UnitedHealth mentioned.
The Wall Road Journal reported Monday that the legal hacking affiliate of ALPHV broke into Change Healthcare’s community utilizing stolen credentials for a system that permits distant entry to its community. The hackers have been in Change Healthcare’s community for greater than per week earlier than deploying ransomware, permitting the hackers to steal important quantities of knowledge from the corporate’s methods.
The cyberattack at Change Healthcare started on February 21 and resulted in ongoing widespread outages at pharmacies and hospitals throughout the US. For weeks, physicians, pharmacies and hospitals couldn’t confirm affected person advantages for shelling out drugs, organizing inpatient care, or processing prior authorizations crucial for surgical procedures.
A lot of the U.S. healthcare system floor to a halt, with healthcare suppliers dealing with monetary strain as backlogs develop and outages linger.
UnitedHealth reported final week that the ransomware assault has value it greater than $870 million in losses. The corporate reported it made $99.8 billion in income through the first three months of the 12 months, faring higher than what Wall Road analysts had anticipated.
UnitedHealth CEO Andrew Witty, who obtained near $21 million in whole compensation the complete 12 months of 2022, is about to testify to Home lawmakers on Could 1.