BianLian attacks: thousands of children's medical records fell into the hands of hackers

Man

Professional
Messages
3,222
Reaction score
810
Points
113
Hackers cynically compromise the safety of children for their own purposes.

Boston Children's Health Physicians (BCHP), an organization that brings together more than 300 doctors in 60 regional offices in New York and Connecticut, USA, confirmed the data breach that occurred in September. The incident compromised the data of thousands of underage patients, including their medical numbers, social security numbers, physical addresses, insurance information, and treatment details.

Suspicious activity in the organization's systems was recorded on September 6, and on September 10, the company's management turned off the systems to prevent further penetration. During the investigation, it turned out that hackers copied patient data from the organization's servers.

On October 4, notifications began to be sent to victims, and a call center was created to help patients. At the same time, the company has not yet submitted reports to state and federal regulators and has not confirmed whether the incident was extortion.

Responsibility for the attack has already been claimed by the BianLian group, which in the past has repeatedly become the object of attention of the FBI, CISA and the Australian Cyber Security Center. Since June 2022, BianLian has repeatedly attacked key US infrastructure, including medical facilities.

According to cybersecurity expert Paul Bischoff of Comparitech, BianLian orchestrated at least 60 attacks in 2024, affecting about two million records. Bischoff also added that a total of 7.3 million records were compromised in 71 cyberattacks on U.S. medical facilities.

Cyberattacks continue to cause serious damage to the healthcare sector. Microsoft recently reported that 389 healthcare facilities in the U.S. were affected in the last fiscal year.

It is noteworthy that Boston Children's Hospital has been repeatedly targeted by hackers before. The most high-profile attack was the 2021 incident, when hackers linked to Iran carried out a cyberattack described as "one of the most heinous" according to FBI Director Christopher Wray. And in 2014, the hospital survived a major DDoS attack.

Source
 
Top