+ Reply to Thread
Results 1 to 3 of 3
  1. #1
    I Void Warranties KarmaKiller's Avatar
    Join Date
    Feb 2007
    Location
    Springfield
    Posts
    13,484
    Blog Entries
    5

    Hackers Hold Virginia's health care database ransom

     
    Hackers Break Into Virginia Health Professions Database, Demand Ransom

    Hackers last week broke into a Virginia state Web site used by pharmacists to track prescription drug abuse. They deleted records on more than 8 million patients and replaced the site's homepage with a ransom note demanding $10 million for the return of the records, according to a posting on Wikileaks.org, an online clearinghouse for leaked documents.

    Wikileaks reports that the Web site for the Virginia Prescription Monitoring Program was defaced last week with a message claiming that the database of prescriptions had been bundled into an encrypted, password-protected file.

    Wikileaks has published a copy of the ransom note left in place of the PMP home page, a message that claims the state of Virginia would need to pay the demand in order to gain access to a password needed to unlock those records:

    "I have your [expletive] In *my* possession, right now, are 8,257,378 patient records and a total of 35,548,087 prescriptions. Also, I made an encrypted backup and deleted the original. Unfortunately for Virginia, their backups seem to have gone missing, too. Uhoh For $10 million, I will gladly send along the password."

    The site, along with a number of other Web pages related to Virginia Department of Health Professions, remains unreachable at this time. Sandra Whitley Ryals, director of Virginia's Department of Health Professions, declined to discuss details of the hacker's claims, and referred inquires to the FBI.

    "There is a criminal investigation under way by federal and state authorities, and we take the information security very serious," she said.

    A spokesman for the FBI declined to confirm or deny that the agency may be investigating.

    Whitley Ryals said the state discovered the intrusion on April 30, after which time it shut down Web site site access to dozens of pages serving the Department of Health Professions. The state also has temporarily discontinued e-mail to and from the department pending the outcome of a security audit, Whitley Ryals said.

    "We do have some of systems restored, but we're being very careful in working with experts and authorities to take essential steps as we proceed forward," she said. "Only when the experts tell us that these systems are safe and secure for being live and interactive will that restoration be complete."

    She added that the department does have a page online at www.dhp.virginia.gov that lists the phone and fax numbers for various state health boards, and that the state would continue issuing health care licenses and investigating violations of the law or regulations of state health licensees.

    This is the second major extortion attack related to the theft of health care data in the past year. In October 2008, Express Scripts, one of the nation's largest processors of pharmacy prescriptions, disclosed that extortionists were threatening to disclose personal and medical information on millions of Americans if the company failed to meet payment demands. Express Scripts is currently offering a $1 million reward for information leading to the arrest and conviction of the individual(s) responsible for trying to extort money from the company.
    Ransom Note

    Source


    Many things strike me as odd here.
    1. Why no backups?
    2. How?
    3. Does this guy think he's actually gonna get away with this?
    4. How/what could they have done to prevent this, if anything?

    What do you think?
    Q6600@4Ghz | i7 920@4.4Ghz |E6320@3.5Ghz
    FAQ's ~ Team Stats
    My PC

    TechIMO Folding@home Team #111 - Crunching for the cure!

  2. #2
    Goverment property now GroundZero3's Avatar
    Join Date
    Oct 2001
    Location
    NOVA
    Posts
    33,902
    Blog Entries
    46
    1) The article doesn't mention anything about any kind of backup on some sort of solid state media. I bet they have something if not some heads are gonna roll
    3) I doubt he thinks he will
    4) Too hard to say as we don't know anything about the system.

  3. #3
    I Void Warranties KarmaKiller's Avatar
    Join Date
    Feb 2007
    Location
    Springfield
    Posts
    13,484
    Blog Entries
    5
    I guess it didn't say anything about the backups, I read that in a comment below. But re-reading the article again, makes it appear as they do have backups if they are "starting to restore systems".
    Still, it's pretty shocking that someone had the gonads to try this. Hopefully the state government learns from this.
    Q6600@4Ghz | i7 920@4.4Ghz |E6320@3.5Ghz
    FAQ's ~ Team Stats
    My PC

    TechIMO Folding@home Team #111 - Crunching for the cure!

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Health care reform...
    By Gomer in forum DebateIMO: Politics, Religion, Controversy
    Replies: 7
    Last Post: December 7th, 2009, 11:05 PM
  2. Health Care Around the World
    By Creatures in forum DebateIMO: Politics, Religion, Controversy
    Replies: 0
    Last Post: March 25th, 2009, 02:24 PM
  3. health care question
    By RedFury in forum IMO Community
    Replies: 6
    Last Post: January 29th, 2008, 10:47 PM
  4. Health Care
    By surreal in forum DebateIMO: Politics, Religion, Controversy
    Replies: 1
    Last Post: May 12th, 2007, 05:29 PM
  5. Argument over universal health care
    By samwichse in forum DebateIMO: Politics, Religion, Controversy
    Replies: 11
    Last Post: December 15th, 2006, 10:58 PM

Tags for this Thread

Posting Permissions

  • You may post new threads
  • You may post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Recommended Sites: ResellerRatings Store Reviews