Medical Data, Cybercriminals' Holy Grail, Now Espionage Target

Advertisement
By Reuters | Updated: 6 June 2015 11:15 IST

Whoever was behind the latest theft of personal data from US government computers, they appear to be following a new trend set by cybercriminals: targeting increasingly valuable medical records and personnel files.

This data, experts say, is worth a lot more to cybercriminals than, say, credit card information. And the Office of Personnel Management (OPM) breach revealed on Thursday suggests cyberspies may now also be finding value in it.

Cyber investigators from iSight Partners said they had linked the OPM hack to earlier thefts of healthcare records from Anthem Inc, a health insurance company, and Premera Blue Cross, a healthcare services provider. Tens of millions of records may have been lost in those attacks.

Advertisement

All three breaches have one thing in common, said John Hultquist of Dallas-based iSight. While cyber-espionage usually focuses on stealing commercial or government secrets, these attacks targeted personally identifiable information.

Advertisement

The stolen data "doesn't appear to have been monetised and the actors seem to have connections to cyber-espionage activity", said Hultquist, adding that none of the data taken in the earlier attacks had turned up for sale on underground forums.

A source close the matter said US authorities were looking into a possible China connection to the breach at OPM, which compromised the personal data of 4 million current and former federal employees.

Advertisement

Several US states were already investigating a Chinese link to the Anthem attack in February, a person familiar with the matter has said.

China routinely denies involvement in hacking, and on Friday a spokesman for the Foreign Ministry in Beijing said suggestions it was involved in the OPM breach were "irresponsible and unscientific".

Advertisement

Hultquist said iSight could not confirm that China was behind the attacks, but similar methods, servers and habits of the hackers pointed to a single state-sponsored group.

Black market flooded
Security researchers say that medical data and personnel records have become more valuable to cybercriminals than credit card data.

The price of stolen credit cards has fallen in online black markets, in part because massive breaches have spiked supply.

"The market has been flooded," said Ben Ransford, co-founder of security start-up Virta Laboratories.

The result: medical information can be worth 10 times as much as a credit card number.

Fraudsters use this data to create fake IDs to buy medical equipment or drugs that can be resold, or they combine a patient number with a false provider number and file made-up claims with insurers.

State-sponsored hackers may not be after money, but would also be interested in such data because they could then build a clearer picture of their target.

That, said Philip Lieberman of security software company Lieberman Software, would increase the chances of any targeted email attack, or spear phish, successfully obtaining confidential data.

Others said that, given the data affected included job histories, those targets might be in other government departments. "It's likely this is less about money and more about gaining deeper access to other systems and agencies," said Mark Bower of HP Security Voltage, a data security company.

This interest in more granular data is pushing hackers of all stripes into more inventive ways of penetrating the defences of hospitals and other institutions holding such data.

TrapX, a cyber-security company, said it had discovered criminal gangs from Russia and China infecting medical devices such as X-Ray systems and blood gas analysers to find their way into servers from which they stole personnel and patient data.

Other security researchers agreed this kind of attack was becoming more common.

Billy Rios, founder of security company Laconicly, said he had found infected systems while working with several healthcare organisations. "Clinical software is riddled with security vulnerabilities," he said.

A survey by think-tank the Ponemon Institute issued last month said that more than 90 percent of healthcare organisations surveyed had lost data, most of it to hackers.

"This is going to get worse before it gets better," said Carl Wright, of TrapX, which discovered the breaches via medical devices.

© Thomson Reuters 2015

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Xbox Cloud Gaming Launched in India: Here's How You Can Start Playing
  2. Google Pixel Phones to Get November 2025 Update Soon, Details Leak Online
  3. YouTube's New 'Ask' Button Uses Gemini to Get Instant Video Answers
  4. Lava Agni 4 Key Specifications Leak Ahead of India Launch Next Week
  5. Oppo and OnePlus Push Stable Android 16 Updates to Global Flagships
  6. Google Is Working on These Five Secret AI Projects
  7. This Security Flaw Can Let Attacker See Your Chats With AI, Microsoft Finds
  8. Oppo Reno 15 Lineup Could be Powered by This MediaTek Dimensity Chipset
  9. WhatsApp May Let You Reserve Same Usernames Used on Facebook, Instagram
  10. Samsung Galaxy S26 Series Might Launch With This Charging Upgrade
  1. Elon Musk's Grok AI Recognises Lord Ganesha, Wows the Internet
  2. Elon Musk’s Grok AI Model Now Supports Files in API
  3. Ghost of Yotei Sells 3.3 Million Copies in a Month, PS5 Sales Near 85 Million Units
  4. Microsoft Discovers Vulnerability That Lets Hackers See ChatGPT and Gemini’s Conversation Topics
  5. iPhone Pocket, a Limited Edition 3D Knitted iPod Sock-Style Accessory, Launched in Select Markets
  6. YouTube's New 'Ask' Button Uses Gemini to Get Instant Video Answers
  7. Oppo, OnePlus Start Global Android 16 Rollout with ColorOS 16 and OxygenOS 16 Updates
  8. Samsung Galaxy S26 Series Could Launch With Faster Wireless Charging Support; Display Sizes Leaked
  9. WhatsApp for Android May Let Users Reserve Same Usernames Used on Facebook and Instagram
  10. The Elder Scrolls 6 Is 'Still a Long Way Off', Says Bethesda Director Todd Howard
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.