Skip to main content

Philippines Health Insurer's Data Hacked, Posted On Dark Web

Hackers have stolen the personal data of potentially millions of people from the Philippines's national health insurer, which has urged members to change their passwords after the "staggering" cyberattack.

The hackers have started releasing files including confidential memos from the stolen data to pressure the government into paying a $300,000 ransom.

Here is what we know so far about the attack, which was discovered by the Philippine Health Insurance Corporation (PhilHealth) on September 22:

What did the hackers steal?

PhilHealth and the government have yet to say exactly how many people have been impacted, but the insurer warned members in a notice that data such as addresses, phone numbers and insurance IDs was compromised.

As of June 30, according to its website, PhilHealth had more than 59 million direct and indirect contributors -- more than half the population of the Philippines.

PhilHealth asked members to monitor credit card transactions and change passwords, especially for financial services.

Separately, employee information was also stolen from the targeted computers.

The hackers released some of the data on the dark web, showing health memos and other information that a top government official described as confidential.

An investigation into the scale of the attack is ongoing, but the National Privacy Commission has described the amount of data stolen as "staggering".

Who are the hackers, and what do they want?

The Philippine government has referred to the attackers as the Medusa group, who have demanded $300,000 to restore access to PhilHealth computers and delete the stolen data.

MedusaLocker, first detected in late 2019, has been used to mainly target healthcare organisations and its creators took particular advantage of the emergency situation during the Covid-19 pandemic, according to a US government report.

The ransomware has been sold to criminal actors, and a US government cybersecurity advisory said its creator receives a cut of any ransom.

It was not clear if the Medusa group identified by the Philippines government is the creator of or an entity that purchased MedusaLocker.

How did they get the data?

On September 22, PhilHealth staff were unable to access a number of computers, which displayed a message saying hackers had locked the machines and encrypted the data.

The insurer shut down the affected systems to try and stop the attack

from spreading, slowing or entirely shutting down some online services for days.

The government has so far not said exactly how hackers got access to the computers.

But in interviews with local media last week, senior PhilHealth official Israel Pargas said the insurer did not have an antivirus software at the time of the attack.

How has the government responded?

With a blunt 'No'. The Philippines does not pay ransom in any criminal cases, including cyberattacks, officials have said.

However, with hackers releasing more data from the stolen files, calls have grown for the government to conduct an audit of its cyber defences.

The National Privacy Commission said Saturday it has started an investigation into any potential lapses and data law violations by PhilHealth.

The NPC said its analysis of 734 GB of stolen data revealed "sensitive personal data", and warned the public that anyone who downloads this information could face criminal charges.

(Except for the headline, this story has not been edited by NDTV staff and is published from a syndicated feed.)



from NDTV News-World-news https://ift.tt/e3j2fn4

Comments

Popular posts from this blog

US Power Firm Admits It May Have Sparked Texas' Largest Wildfire Ever

A US power company admitted Thursday that its equipment may have sparked the largest wildfire in Texas' history. Xcel -- the parent of Southwest Public Service Company, which provides electricity to part of the state -- said it was working with officials investigating the cause of the blaze that charred more than a million acres (over 400,000 hectares). "Based on currently available information, Xcel Energy acknowledges that its facilities appear to have been involved in an ignition of the Smokehouse Creek fire," the company said. Hundreds of homes are thought to have been destroyed in the fire, which is known to have killed at least two people and over 3,000 farm animals. Xcel, which is facing at least one lawsuit, denied its equipment was improperly maintained. "However, we encourage people who had property destroyed by, or livestock lost in, the Smokehouse Creek fire to submit a claim to Xcel Energy through our claims process," the statement said. The W

It's Official, Kamala Harris Is Democratic Candidate For US Election

US Vice President Kamala Harris effectively secured the Democratic party's presidential nomination Friday, confirming her remarkable rise to party standard bearer in November's showdown against Republican Donald Trump. Kamala Harris was the sole candidate on the ballot for a five-day electronic vote of nearly 4,000 party convention delegates. She will be officially crowned at a Chicago convention later this month. "I am honored to be the presumptive Democratic nominee for President of the United States," Kamala Harris, 59, said on a phone-in to a party celebration after securing enough votes by the second day of the marathon vote. In the two weeks since President Joe Biden ended his reelection bid, Kamala Harris has gained full control of the party. No other Democrats stepped forward to challenge her elevation to the top of the ticket, making her confirmation as the first Black and South Asian woman ever to secure a major party's nomination a formality. The a

All You Need To Know About Donald Trump's 1st Criminal Trial

Donald Trump goes on trial Monday for allegedly covering up hush money payments to hide affairs ahead of the 2016 presidential election which propelled him into the White House. He will become the first former US president to go on criminal trial when jury selection begins next week. Here are the key questions ahead of the landmark trial: What is Trump accused of? As Trump closed in on victory in the 2016 presidential election, adult film star Stormy Daniels was paid $130,000 to keep quiet about an alleged 2006 sexual tryst with Trump. The payments, made by Trump's lawyer at the time, Michael Cohen, were revealed by The Wall Street Journal in January 2018. Prosecutors have seized on the concealment of the payments as "legal fees" in the Trump Organization's accounts when Cohen was reimbursed as the heart of their case. Prosecutors say Trump "concealed the reason for these payments... which clearly were paid in order to influence voters," former prosec