FBI warns hackers are stealing healthcare payments

dollar
Image Credit: Akspic (Image credit: Future)

Hackers are stealing healthcare payments, by diverting them to bank accounts under their control, the FBI is warning. 

The Bureau was forced to issue a warning after more than $4.6 million was stolen in three separate incidents where criminals would send out phishing emails, or reach out to people working at payment processors and financial departments, pretending to be support center employees. 

Through phishing emails and calls, the attackers would try and get the victims into giving away login credentials from healthcare portals, websites, and similar. After that, they’d log into people’s accounts and change payment information. That way, once the payment goes through, it goes to the wrong account. 

Major incidents

Besides phishing, the threat actors are also editing Microsoft Exchange server settings and creating custom rules in order to keep track of emails going in and out of the target’s inbox.

Of the three incidents, one happened when credentials from a “major healthcare company” were used to replace a hospital’s direct deposit banking information with that belonging to the attackers. In total, $3.1 million were lost. In another incident, the thieves made away with some $700,000, while in the third, an attacker impersonated an employee, changed the Automated Clearing House (ACH) instructions, and took $840,000.

To defend from such attacks, healthcare organizations and payment providers should, first and foremost, educate their employees on the dangers of phishing, and make sure they have strong, hard-to-break passwords that they don’t share with friends, family, or leave lying around on a slip of paper on their desks. Furthermore, they should be wary of any changes to the email server that weren’t planned, or seem logical.

They should also be suspicious of any employee requesting a password reset, a phone number reset for MFA, within a short period of time, the FBI concluded.

Via: BleepingComputer

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
ID theft
Over a million patients potentially hit after another US healthcare provider hit by cyberattack
A doctor holding a tablet showing holograms of a skeleton, DNA, and other medical diagrams.
Chinese hacking group hijacks hospital computers by spoofing legitimate medical software
healthcare
US government wants to toughen up cybersecurity rules for healthcare organizations
Lock on Laptop Screen
United Healthcare data breach may have affected 190 million Americans
A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system
Microsoft authentication system spoofed via phishing attack
security
Ransomware gangs allegedly hit two major US healthcare firms, 300,000 patients have data stolen
Latest in Security
Data Breach
Thousands of healthcare records exposed online, including private patient information
China
Juniper patches security flaws which could have let hackers take over your router
Representational image depecting cybersecurity protection
GitLab has patched a host of worrying security issues
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
AI agents can be hijacked to write and send phishing attacks
China
Volt Typhoon threat group had access to American utility networks for the best part of a year
Abstract image of cyber security in action.
MassJacker malware targets those looking for pirated software
Latest in News
Apple iPhone 16 Pro HANDS ON
Leaked iPhone 17 dummy units may have given us our best look yet at all four models
A super close up image of the Google Gemini app in the Play Store
It's official: Google Assistant will be retired for phones this year, with Gemini taking over
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 16 (game #1147)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 16 (game #378)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 16 (game #644)
Three iPhone 16 handsets on show
Apple could launch an iPhone 17 Ultra this year – but we've heard these rumors before