Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

US Healthcare records offered for sale online
BBC ^ | 06/27/2016

Posted on 06/28/2016 9:00:42 AM PDT by BenLurkin

Three US healthcare organisations are reportedly being held to ransom by a hacker who stole data on hundreds of thousands of patients.

The hacker has also put the 650,000 records up for sale on dark web markets where stolen data is traded.

Prices for the different databases range from $100,000 (£75,000) to $411,000.

...

The organisations that data was stolen from are known to be based in Missouri, Georgia and the midwest. The attacker told Motherboard that he would not name the organisations, to give them a chance to pay up.

The news site said it had checked 30 records on patients from Georgia and in most cases the information listed was confirmed by the people it reached.

Data in the files includes names, addresses and phone numbers as well as social security numbers, insurance information and detailed medical histories.

The information is believed to have been stolen via a vulnerability in software that uses a technology known as the remote desktop protocol (RDP) - many firms use this to let staff log in from home or to let support workers fix IT problems from afar.

(Excerpt) Read more at bbc.com ...


TOPICS: Crime/Corruption
KEYWORDS: hacking; healthcare; internet

1 posted on 06/28/2016 9:00:42 AM PDT by BenLurkin
[ Post Reply | Private Reply | View Replies]

To: BenLurkin

A report from BBC.

Anyone seen reporting on this issue in US NEWS SERVICES ?


2 posted on 06/28/2016 9:03:52 AM PDT by UCANSEE2 (Lost my tagline on Flight MH370. Sorry for the inconvenience.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin

But...but...I thought HIPAA protected us from everything!


3 posted on 06/28/2016 9:05:30 AM PDT by floozy22 ("That was not the easiest entrance I've ever made. It felt like I was crossing the border, actually")
[ Post Reply | Private Reply | To 1 | View Replies]

To: UCANSEE2
Total of ten million records according to PC World...

Perhaps ObamaCare will pick up the bill? Heck, a lawyer could probably pay the $820,000 and turn around and file suit against the health providers - Recovering the cost paid plus their fees plus whatever penalties they could squeeze would make this almost a sure bet. Not to mention the commission LifeLock will give him for every name that continues the service after the free year that the health providers are going to pay for...

4 posted on 06/28/2016 9:11:10 AM PDT by kingu (Everything starts with slashing the size and scope of the federal government.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: UCANSEE2

“Anyone seen reporting on this issue in US NEWS SERVICES ?”

No, that would be useful. They are instead trying to cover Hillary’s substantial ass.


5 posted on 06/28/2016 9:11:28 AM PDT by headstamp 2 (Fear is the mind killer.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: floozy22

It does.. Meaningless data like your name, address and social security number aren’t protected like the results of your last colon exam...


6 posted on 06/28/2016 9:12:01 AM PDT by kingu (Everything starts with slashing the size and scope of the federal government.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: BenLurkin

What the hell difference does it make. The DC lawyers, politicians, and bureaucrats already stole our personal health information.


7 posted on 06/28/2016 9:22:30 AM PDT by Neoliberalnot (Marxism works well only with the uneducated and the unarme)
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin
The information is believed to have been stolen via a vulnerability in software that uses a technology known as the remote desktop protocol (RDP) - many firms use this to let staff log in from home or to let support workers fix IT problems from afar.

Uh, wait... They had an RDP port open to the public 'Net? It's riddle with security vulnerabilities:

https://www.google.com/search?q=rdp+vulnerability

Basic IT security would have put the RDP port behind a firewall, and a VPN required to access the network. And, the VPN would require two-factor authentication for login.

8 posted on 06/28/2016 9:27:06 AM PDT by justlurking
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin
or to let support workers fix IT problems from afar.

So in what foreign country was their IT?

9 posted on 06/28/2016 9:46:49 AM PDT by PAR35
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin

I will be so glad soon to, once again, see my doc without the f’ing laptop in hand, and not being asked the same set of questions by everyone that walks in the exam room, and not being asked about guns and my happy happy joy joy state!


10 posted on 06/28/2016 11:51:33 AM PDT by polymuser (Enough is enough!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: BenLurkin

Bend over, this will only hurt a moment.


11 posted on 06/28/2016 1:09:23 PM PDT by moovova
[ Post Reply | Private Reply | To 1 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson