Ransomware attack on revenue cycle vendor exposes 1.2 million patients, employees

A ransomware attack on Practicefirst Medical Management Solutions and PBS Medcode has left more than 1 million people exposed after hackers stole patient files.

Advertisement

The vendor provides billing and coding services on behalf of hospitals and health systems, according to a data breach notice posted by Maine’s attorney general.

Four things to know:

  1. Hackers infiltrated Practicefirst’s systems Dec. 25 and launched a ransomware attack. The firm discovered the breach on Dec. 30. Hackers tried to steal files with patient and employee information.
  2. Upon discovering the attack, the vendor shut down its systems, changed passwords, alerted law enforcement and hired cybersecurity experts.
  3. An investigation discovered that hackers copied protected health information, exposing 1,210,688 people. Stolen data includes names, Social Security numbers, bank account information, treatment-related information and more.
  4. In response to the attack, the firm is deploying additional security protocols to protect its network, email environment and computer systems. 

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

Designing the intelligent hospital: Building hospitals around people, data and care

Tuesday, July 21
12:00 PM - 1:00 PM CDT

Presenters: Braheem Santos, Schneider ElectricJohn Donohue, Penn Medicine

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.