Get all your news in one place.
100’s of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

Change Healthcare attack that disrupted prescriptions blamed on BlackCat ransomware

Ransomware attack on a computer.

Last week’s cyberattack against US health tech giant Change Healthcare may yet turn out to be ransomware after all.

The company recently posted a short announcement on its status update website, saying some applications were unavailable due to a “cyber security issue”. 

The incident forced parts of the company’s infrastructure offline, and some login pages were unavailable, leaving some users unable to access their prescriptions.

Major campaign

TechCrunch has now disclosed that the attack was indeed ransomware, undertaken by none other than ALPHV (BlackCat), according to a “healthcare executive with knowledge of the incident, who was on the call briefed by the company’s executives." 

Reuters also linked BlackCat to the incident. The ransomware group hasn’t added Change Healthcare to its data leak site just yet, which could mean two things: either it wasn’t behind the attack, or it’s still negotiating potential ransom payout with the victim. Usually, hackers steal sensitive data during ransomware attacks and threaten to release it online, unless a payment is made. 

Given that Change Healthcare is a major US prescription medication processor, there are good chances that millions of customer's data was stolen. There is no confirmation that any data was stolen however, and Change Healthcare is yet to comment on the news.

The disruption is affecting more than just Change. Citing Michigan local papers, TechCrunch reported local pharmacies were experiencing outages. 

Scheurer Health announced on Facebook that it wasn’t able to process prescriptions through patient insurance due to the “nationwide outage from the largest prescription processor in North America.”

Change Healthcare claims to be handling 15 billion healthcare transactions annually, which would put it firmly as one of the largest health tech firms in the country. 

Next to LockBit and Cl0p, BlackCat is one of the biggest and most dangerous ransomware operators out there. 

More from TechRadar Pro

Sign up to read this article
Read news from 100’s of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.