Change Healthcare hit by ransomware, attackers vanish without a trace

March 6, 2024
1 min read


TLDR:

– The criminal hacking group behind the Change Healthcare ransomware attack has gone dark after receiving a $22 million ransom payment.

– The group, known as ALPHV or BlackCat, posted a fake law enforcement seizure notice and claimed they would sell their source code.

– Cybercrime researchers believe the FBI seizure notice is fake and that the group may rebrand and reemerge in the future.

Article Summary:

The article discusses the recent actions of the ransomware group ALPHV/BlackCat, who claimed credit for the ransomware attack on Change Healthcare and received a $22 million ransom payment. The group shut down its website, posted a fake law enforcement seizure notice, and announced they would sell their source code for $5 million. Cybercrime researchers believe the seizure notice is fake and that the group may be planning to rebrand and reemerge in the future.

The U.S. Department of Health and Human Services is taking steps to support healthcare providers facing financial difficulties due to ransomware attacks. ALPHV admins have been accused of scamming their affiliates, and the group’s past actions indicate they may return in the future. The uncertainties surrounding ALPHV’s closure highlight the chaotic nature of the cybercrime underworld, where criminals often scam each other.


Latest from Blog

Bogus job tempts aerospace, energy workers

TLDR: A North Korean cyberespionage group is posing as job recruiters to target employees in aerospace and energy sectors. Mandiant reports that the group uses fake job descriptions stored in malicious archives

Cyber insurance changes shape of security for good and bad

TLDR: Key Points: Cyber-insurance landscape is shifting to encourage greater cyber resiliency Rising costs of cyberattacks are prompting insurers to re-examine underwriting How Cyber-Insurance Shifts Affect the Security Landscape The article discusses