Federal authorities are intensifying their pursuit of the cybercriminals behind hospital and healthcare ransomware attacks, bringing charges against ransomware developers, state-sponsored hackers and even insiders from the cybersecurity industry. The latest move came July 14, when the Justice Department indicted…
Cybersecurity
A cyberattack on New Jersey law firm Greenbaum Rowe Smith & Davis has exposed data on 12,801 patients across three health systems in the state. Greenbaum discovered unauthorized access to its systems through a compromised user account in November 2025…
A cybercriminal group calling itself The Syndicate claims it breached Israeli fintech firm Nayax and stole more than 1 billion payment card records, while telling DataBreaches.net it steers clear of attacking hospitals. Asked whether it refrains from hacking certain sectors,…
The White House launched “Gold Eagle” on July 14, an AI-powered clearinghouse designed to accelerate detection and patching of cybersecurity vulnerabilities across critical infrastructure. The initiative pairs the Treasury Department, DHS’ Cybersecurity and Infrastructure Security Agency and the Department of…
Chattanooga, Tenn.-based Erlanger Health System is notifying patients of Erlanger Western Carolina Hospital in Murphy, N.C., that their protected health information was sent to an unauthorized billing partner. Erlanger discovered the issue on May 13, according to a breach notification…
Three Russian nationals and two St. Petersburg-based “bulletproof hosting” companies face federal charges for running criminal infrastructure that enabled cyberattacks causing more than $62 million in U.S. victim losses, including against hospitals. The Justice Department unsealed the indictment July 14…
The National Security Agency, the Cybersecurity and Infrastructure Security Agency, the Federal Bureau of Investigation (FBI) and 15 allied agencies issued a joint advisory in July on a Russian FSB unit exploiting poorly configured routers worldwide. The unit, known as…
New York City-based NYC Health + Hospitals disclosed that a data breach at business associate Solventum Health Information Systems affected 58,778 patients. The incident involved unauthorized access to protected health information by a threat actor and occurred on or around…
The U.S. Treasury Department sanctioned a VPN provider and two individuals on July 13 for supplying infrastructure and tools used in ransomware attacks that have hit U.S. hospitals, financial services firms and municipal governments. The Treasury’s Office of Foreign Assets…
A former ransomware negotiator has been sentenced to 70 months in federal prison for conspiring to extort healthcare and other companies using BlackCat/ALPHV ransomware. Angelo Martino, 41, worked as a ransomware negotiator for an incident response company where he was…