MOVEit data breach claims another health system victim

The MOVEit data breach that has affected millions of people across a variety of industries has claimed another health system victim.

Advertisement

Louisville, Ky.-based UofLHealth confirmed to TechCrunch in a July 11 story that it was caught up in the breach but declined to specify how many patients were affected. Clop, a ransomware gang with ties to Russia, has claimed responsibility for the hack and listed the health system on its dark web leak site.

“Recently, the United States government confirmed that multiple federal agencies had been affected by cyberattacks which exploited a security vulnerability in a popular file transfer tool called MOVEit,” a UofL Health spokesperson told the news outlet. “Unfortunately, a small number of UofL Health medical practices used this software to transfer files to third-party vendors.

“Upon learning of this event, UofL Health immediately took action and is now working with a forensic IT agency to determine the scope of the matter. The security of normal operations at UofL Health hospitals, medical centers, and physician offices has not been jeopardized.”

Other health systems targeted in the MOVEit breach include Baltimore-based Johns Hopkins Medicine and Bellaire, Texas-based Harris Health System.

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

The hidden cost of lost clinical time and how leading health systems are responding

Friday, August 7
12:00 PM - 1:00 PM CDT

Presenters: Kassaundra McKnight-Young, Zebra TechnologiesGregory Carras, Zebra TechnologiesJennifer Gene, Levata

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.