Healthcare systems could face new DPRK ransomware tactics

Healthcare systems could face new DPRK ransomware tactics

Government agencies from the United States and the Republic of Korea are highlighting new ransomware tactics they’ve seen, which they say are used to conceal the affiliation of Democratic People’s Republic of Korea hackers working to stage attacks against U.S. and South Korean healthcare organizations and critical infrastructure.WHY IT MATTERS
The new cybersecurity advisory, Ransomware attacks on critical infrastructure fund DPRK malicious cyber activities, details both North Korea’s historically and recently observed tactics, techniques and procedures and indicators of compromise.
The additional observed TTPs “span phases from acquiring and purchasing infrastructure to concealing DPRK affiliation,” according to the United States National Security Agency, the Federal…

Continue Reading
NextGen Healthcare hit by BlackCat ransomware

NextGen Healthcare hit by BlackCat ransomware

The group, also known as ALPHV and suspected to be a successor to BlackMatter, has demanded ransoms as high as $1.5M with affiliates keeping 80-90%, according to the Office of Information Security at U.S. Health and Human Services and the Health Sector Cybersecurity Coordination Center.WHY IT MATTERS
The Russian ransomware group allegedly attacked the EHR vendor NextGen on January 17, The Washington Post reported on Monday. 
“The company says it doesn’t look like the hackers obtained any client data or patient data,” according to the Post.
Healthcare IT News reached out to NextGen for comment and will update this story if it responds.
Claiming responsibility, BlackCat “put…

Continue Reading