Connect with us

CBS News

Hacking at UnitedHealth unit cripples a swath of the U.S. health system: What to know

Avatar

Published

on


Early in the morning of Feb. 21, Change Healthcare, a company unknown to most Americans that plays a huge role in the U.S. health system, issued a brief statement saying some of its applications were “currently unavailable.”

By the afternoon, the company described the situation as a “cybersecurity” problem.

Since then, it has rapidly blossomed into a crisis.

The company, recently purchased by insurance giant UnitedHealth Group, reportedly suffered a cyberattack. The impact is wide and expected to grow. Change Healthcare’s business is maintaining health care’s pipelines — payments, requests for insurers to authorize care, and much more. Those pipes handle a big load: Change says on its website, “Our cloud-based network supports 14 billion clinical, financial, and operational transactions annually.”

Initial media reports have focused on the impact on pharmacies, but techies say that’s understating the issue. The American Hospital Association says many of its members aren’t getting paid and that doctors can’t check whether patients have coverage for care.

But even that’s just a slice of the emergency: CommonWell, an institution that helps health providers share medical records, information critical to care, also relies on Change technology. The system contained records on 208 million individuals as of July 2023. Courtney Baker, CommonWell marketing manager, said the network “has been disabled out of an abundance of caution.”

“It’s small ripple pools that will get bigger and bigger over time, if it doesn’t get solved,” Saad Chaudhry, chief digital and information officer at Luminis Health, a hospital system in Maryland, told KFF Health News.

Here’s what to know about the hack.

Who did it?

Media reports are fingering ALPHV, a notorious ransomware group also known as Blackcat, which has become the target of numerous law enforcement agencies worldwide. While UnitedHealth Group has said it is a “suspected nation-state associated” attack, some outside analysts dispute the linkage. The gang has previously been blamed for hacking casino companies MGM and Caesars, among many other targets.

The Department of Justice alleged in December, before the Change hack, that the group’s victims had already paid it hundreds of millions of dollars in ransoms.

Is this a new problem?

Absolutely not. A study published in JAMA Health Forum in December 2022 found that the annual number of ransomware attacks against hospitals and other providers doubled from 2016 to 2021.

“It’s more of the same, man,” said Aaron Miri, the chief digital and information officer at Baptist Health in Jacksonville, Florida.

Because the assaults disable the target’s computer systems, providers have to shift to paper, slowing them down and making them vulnerable to missing information.

Further, a study published in May 2023 in JAMA Network Open examining the effects of an attack on a health system found that waiting times, median length of stay, and incidents of patients leaving against medical advice all increased — at neighboring emergency departments. The results, the authors wrote, mean cyberattacks “should be considered a regional disaster.”

Attacks have devastated rural hospitals, Miri said. And wherever health care providers are hit, patient safety issues follow.

What does it mean for patients?

Year after year, more Americans’ health data is breached. That exposes people to identity theft and medical error.

Care can also suffer. For example, a 2017 attack, dubbed “NotPetya,” forced a rural West Virginia hospital to reboot its operations and hit pharma company Merck so hard it wasn’t able to fulfill production targets for an HPV vaccine.

Because of the Change Healthcare attack, some patients may be routed to new pharmacies less affected by billing problems. Patients’ bills may also be delayed, industry executives said. At some point, many patients are likely to receive notices their data was breached. Depending on the exact data that has been pilfered, those patients may be at risk for identity theft, Chaudhry said. Companies often offer free credit monitoring services in those situations.

“Patients are dying because of this,” Miri said. Indeed, an October preprint from researchers at the University of Minnesota found a nearly 21% increase in mortality for patients in a ransomware-stricken hospital.

How Did It Happen?

The Health Information Sharing and Analysis Center, an industry coordinating group that disseminates intel on attacks, has told its members that flaws in an application called ConnectWise ScreenConnect are to blame. Exact details couldn’t be confirmed.

It’s a tool tech support teams use to remotely troubleshoot computer problems, and the attack is “apparently fairly trivial to execute,” H-ISAC warned members. The group said it expects additional victims and advised its members to update their technology. When the attack first hit, the AHA recommended its members disconnect from systems both at Change and its corporate parent, UnitedHealth’s Optum unit. That would affect services ranging from claims approvals to reference tools.

Millions of Americans see physicians and other practitioners employed by UnitedHealth and are covered by the company’s insurance plans.

UnitedHealth has said only Change’s systems are affected and that it’s safe for hospitals to use other digital services provided by UnitedHealth and Optum, which include claims filing and processing systems.

But not many chief information officers “are jumping to reconnect,” Chaudhry said. “It’s an uneasy feeling.”

Miri says Baptist is using the conglomerate’s technology and that he trusts UnitedHealth’s word that it’s safe.

Where’s the Federal Government?

Neither executive was sanguine about the future of cybersecurity in health care. “It’s going to get worse,” Chaudhry said.

“It’s a shame the feds aren’t helping more,” Miri said. “You’d think if our nuclear infrastructure were under attack the feds would respond with more gusto.”

While the departments of Justice and State have targeted the ALPHV group, the government has stayed behind the scenes more in the aftermath of this attack. Chaudhry said the FBI and the Department of Health and Human Services have been attending calls organized by the AHA to brief members about the situation.

Miri said rural hospitals in particular could use more funding for security and that agencies like the Food and Drug Administration should have mandatory standards for cybersecurity.

There’s some recognition among officials that improvements need to be made.

“This latest attack is just more evidence that the status quo isn’t working and we have to take steps to shore up cybersecurity in the health industry,” said Sen. Mark Warner (D-Va.), the chair of the Senate Select Committee on Intelligence and a longtime advocate for stronger cybersecurity, in a statement to KFF Health News.

KFF Health News (formerly known as Kaiser Health News, or KHN) is a national newsroom that produces in-depth journalism about health issues. Together with Policy Analysis and Polling, KHN is one of the three major operating programs at KFF (Kaiser Family Foundation). KFF is an endowed nonprofit organization providing information on health issues to the nation.



Read the original article

Leave your vote

Continue Reading

CBS News

Former New York Gov. David Paterson, stepson attacked while walking in New York City

Avatar

Published

on



CBS News New York

Live

NEW YORK — Former New York Gov. David Paterson and his stepson were attacked in New York City on Friday night, authorities said.

The incident occurred just before 9 p.m. on Second Avenue near East 96th Street on the Upper East Side, according to the New York City Police Department.

Police said officers were sent to the scene after an assault was reported. When officers arrived, police say they found a 20-year-old man suffering from facial injuries and a 70-year-old man who had head pain. Both victims were taken to a local hospital in stable condition.

In a statement, a spokesperson for the former governor said the two were attacked while “taking a walk around the block near their home by some individuals that had a previous interaction with his stepson.” 

The spokesperson said that they were injured “but were able to fight off their attackers.” 

Both were taken to Cornell Hospital “as a precaution,” he added. 

Police said no arrests have been made and the investigation is ongoing.

The 70-year-old Paterson, a Democrat, served as governor from 2008 to 2010, stepping into the post after the resignation of Eliot Spitzer following his prostitution scandal. He made history at the time as the state’s first-ever Black and legally blind governor. 



Read the original article

Leave your vote

Continue Reading

CBS News

10/4: CBS Evening News – CBS News

Avatar

Published

on


10/4: CBS Evening News – CBS News


Watch CBS News



What unexpected surge in jobs report means for the U.S economy; North Carolina family vows to rebuild after Helene destroyed their campground

Be the first to know

Get browser notifications for breaking news, live events, and exclusive reporting.




Read the original article

Leave your vote

Continue Reading

CBS News

Teen critically wounded in shooting on Philadelphia bus; one person in custody

Avatar

Published

on


Biden to travel to disaster areas afffected by Hurricane Helene | Digital Brief


Biden to travel to disaster areas afffected by Hurricane Helene | Digital Brief

01:19

A 17-year-old boy was critically injured and a person is in custody after a gunman opened fire on a SEPTA bus in North Philadelphia Friday evening, police said.

At around 6:15 p.m., Philadelphia police were notified about a shooting on a SEPTA bus traveling on Allegheny Avenue near 3rd and 4th streets in North Philadelphia, Inspector D F Pace told CBS News Philadelphia.

There were an estimated 30 people on the bus at the time of the shooting, Pace said, but only the 17-year-old boy was believed to have been shot. Investigators said they believe it was a targeted attack on the teenager and that he was shot in the back of the bus at close range.

According to Pace, the SEPTA bus driver alerted a control center about the shooting, which then relayed the message to Philadelphia police, who responded to the scene shortly.

Officers arrived at the scene and found at least one spent shell casing and blood on the bus, but no shooting victim, Pace said. Investigators later discovered the 17-year-old had been taken to Temple University Hospital where he is said to be in critical condition, according to police.

bullet-holes-in-septa-bus.png
Officers arrived at the scene and found at least one spent shell casing and blood on the bus, but no shooting victim, Pace said  

CBS Philadelphia


Through their preliminary investigation, police learned those involved in the SEPTA shooting may have fled in a silver-colored Kia.

Authorities then found a car matching the description of the Kia speeding in the area and a pursuit began, Pace said. Police got help from a PPD helicopter as they followed the Kia, which ended up crashing at 5th and Greenwood streets in East Mount Airy. Pace said the Kia crashed into a parked car.

The driver of the crashed car ran away but police were still able to take them into custody, Pace said. 

Investigators believe there was a second person involved in the shooting who ran from the car before it crashed. Police said they believe this person escaped near Allegheny Avenue and 4th Street, leaving a coat behind. 

According to Pace, police also found a gun and a group of spent shell casings believed to be involved in the shooting in the same area.

“It’s very possible that there may have been a shooting inside the bus and also shots fired from outside of the bus toward the bus,” Pace said, “We’re still trying to piece all that together at this time.”

This is an active investigation and police are reviewing surveillance footage from the SEPTA bus.



Read the original article

Leave your vote

Continue Reading

Copyright © 2024 Breaking MN

Log In

Forgot password?

Forgot password?

Enter your account data and we will send you a link to reset your password.

Your password reset link appears to be invalid or expired.

Log in

Privacy Policy

Add to Collection

No Collections

Here you'll find all collections you've created before.