Change Healthcare Cyberattack Prompts Cybersecurity Advisory

The party behind this attack has been identified as the ALPHV Blackcat ransomware group.

By Jeff Wardon, Jr., Assistant Editor


Change Healthcare, a provider of revenue and payment cycle management for healthcare, suffered a cyberattack on Feb. 21. The party behind this attack has been identified as the ALPHV Blackcat ransomware group, according to The HIPAA Journal.  

While this attack did not specifically target hospitals and other healthcare facilities, Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), and the U.S. Department of Health and Human Services (HHS) have sounded the alarm that other healthcare organizations could soon find themselves caught in the crosshairs. 

The organizations released a joint Cybersecurity Advisory (CSA) concerning the APLHV Blackcat ransomware.  

The advisory urges critical infrastructure organizations to implement mitigation measures to reduce the risk of ALPHV Blackcat ransomware incidents. It also mentions a significant update to the ransomware in February 2023, known as the ALPHV Blackcat Ransomware 2.0 Sphynx, that enhances defense evasion capabilities and expands compatibility to encrypt Windows and Linux systems, including VMWare instances. 

CISA recommends taking the following actions to mitigate against ransomware threats:  

  1. Routinely take inventory of assets and data to identify authorized and unauthorized devices and software. 
  2. Prioritize remediation of known exploited vulnerabilities. 
  3. Enable and enforce multifactor authentication with strong passwords. 
  4. Close unused ports and remove applications not deemed necessary for day-to-day operations. 

Jeff Wardon, Jr. Is the assistant editor for the facilities market. 



March 1, 2024


Topic Area: Information Technology , Security


Recent Posts

Why Healthcare Facilities Management Is Critical to Patient Safety 

Hospitals and other healthcare facilities rely on much more than doctors and nurses to keep patients safe.


Sanford Health and North Memorial Health Finalize Partnership

An integration process is underway to create a unified organization.


Cornerstone Behavioral Healthcare Falls Victim to Ransomware Attack

On May 26, 2026, Cornerstone discovered that a breach of the security of certain PHI that Cornerstone maintains occurred as a result of a ransomware attack.


Containing Candida Auris Across the Care Continuum

Containment becomes achievable, sustainable and far more effective for facilities that follow the same precautions, disinfectant standards and equipment rules.


Early Entry: Manager's Critical Role in Construction Planning

Facilities managers should seek a seat at the table early to shape decisions that affect operations and continuity of care from the onset.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

 
 
 
 

Healthcare Facilities Today membership includes free email newsletters from our facility-industry brands.

Facebook   Twitter   LinkedIn   Posts

Copyright © 2023 TradePress. All rights reserved.