Change Healthcare hit by ransomware, attackers vanish without a trace

March 6, 2024
1 min read


TLDR:

– The criminal hacking group behind the Change Healthcare ransomware attack has gone dark after receiving a $22 million ransom payment.

– The group, known as ALPHV or BlackCat, posted a fake law enforcement seizure notice and claimed they would sell their source code.

– Cybercrime researchers believe the FBI seizure notice is fake and that the group may rebrand and reemerge in the future.

Article Summary:

The article discusses the recent actions of the ransomware group ALPHV/BlackCat, who claimed credit for the ransomware attack on Change Healthcare and received a $22 million ransom payment. The group shut down its website, posted a fake law enforcement seizure notice, and announced they would sell their source code for $5 million. Cybercrime researchers believe the seizure notice is fake and that the group may be planning to rebrand and reemerge in the future.

The U.S. Department of Health and Human Services is taking steps to support healthcare providers facing financial difficulties due to ransomware attacks. ALPHV admins have been accused of scamming their affiliates, and the group’s past actions indicate they may return in the future. The uncertainties surrounding ALPHV’s closure highlight the chaotic nature of the cybercrime underworld, where criminals often scam each other.


Latest from Blog

EU push for unified incident report rules

TLDR: The Federation of European Risk Management Associations (FERMA) is urging the EU to harmonize cyber incident reporting requirements ahead of new legislation. Upcoming legislation such as the NIS2 Directive, DORA, and