Community Health Says Patient Data Stolen in Cyber-Attack From China

Advertisement
By Reuters | Updated: 19 August 2014 09:11 IST
Community Health Systems Inc, one of the biggest U.S. hospital groups, said on Monday it was the victim of a cyber attack from China, resulting in the theft of Social Security numbers and other personal data belonging to 4.5 million patients.

Security experts said the hacking group, known as "APT 18," may have links to the Chinese government.

"APT 18" typically targets companies in the aerospace and defense, construction and engineering, technology, financial services and healthcare industry, said Charles Carmakal, managing director with FireEye Inc's (FEYE.O) Mandiant forensics unit, which led the investigation of the attack on Community Health in April and June.

"They have fairly advanced techniques for breaking into organizations as well as maintaining access for fairly long periods of times without getting detected," he said.

Advertisement

The information stolen from Community Health included patient names, addresses, birth dates, telephone numbers and Social Security numbers of people who were referred or received services from doctors affiliated with the hospital group in the last five years, the company said in a regulatory filing.

Advertisement

The stolen data did not include medical or clinical information, credit card numbers, or any intellectual property such as data on medical device development, said Community Health, which has 206 hospitals in 29 states.

The attack is the largest of its type involving patient information since a U.S. Department of Health and Human Services website started tracking such breaches in 2009. The previous record, an attack on a Montana Department of Public Health server, was disclosed in June and affected about 1 million people.

Advertisement

Chinese hacking groups are known for seeking intellectual property, such as product design, or information that might be of use in business or political negotiations.

Social Security numbers and other personal data are typically stolen by cybercriminals to sell on underground exchanges for use by others in identity theft.

Advertisement

Over the past six months Mandiant has seen a spike in cyber-attacks on healthcare providers, although this was the first case it had seen in which a sophisticated Chinese group has stolen personal data, according to Carmakal. Mandiant monitors about 20 hacking groups in China.

New scrutiny
Cyber-security has come under increased scrutiny at healthcare providers this year, both by law enforcement and attackers.

The FBI warned the industry in April that its protections were lax compared with other sectors, making it vulnerable to hackers looking for details that could be used to access bank accounts or obtain prescriptions.

Mandiant has tracked "APT 18" for four years. When asked if the hackers were linked to the Chinese government, Carmakal said it was "a possibility" but declined to elaborate.

Another cyber-security firm, CrowdStrike, which has also been monitoring "APT 18" for about four years, said it believes the hackers are either backed by Beijing or work directly for the government, based on the targets they have chosen.

CrowdStrike Chief Technology Officer Dmitri Alperovitch said his firm has seen "APT 18" targeting human rights groups and chemical companies.

"They are of above average skill" among Chinese hackers, said Alperovitch, whose company dubbed the group "Dynamite Panda."

The issue of Chinese state-sponsored hacking is highly sensitive. Tensions between Washington and Beijing have grown since May, when a U.S. grand jury indicted five Chinese military officers on charges they hacked into American companies for sensitive manufacturing secrets. China has denied the charges.

FBI spokesman Joshua Campbell said his agency was investigating the Community Health case, but declined to elaborate.

The Department of Homeland Security said it believed the incident was isolated, although it shared technical details about the attack with other healthcare providers. An agency official told Reuters it was too soon to say who was behind the attack.

Community Health said it has removed malicious software used by the attackers from its systems and completed other remediation steps. It is now notifying patients and regulatory agencies, as required by law.

The company said it is insured against such losses and does not at this time expect a material adverse effect on financial results. Community Health's stock rose 66 cents, or 1.3 percent, to close at $51.66 on the New York Stock Exchange on Monday.

© Thomson Reuters 2014

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. New Aadhaar App Launched for Android and iOS, Brings These Features
  2. Motorola Edge 70 Ultra Specifications Leaked Online; Could Run on This Chipset
  3. Realme GT 8 Pro Aston Martin F1 Limited Edition Debuts With Racing-Inspired Design
  4. Samsung Galaxy S26 Series Launch Timeline Leaked Again
  5. Oppo Reveals Storage Options, Colourways of Find X9 Series Ahead of Debut
  6. Apple May Bring Several New Satellite Connectivity Features to iPhone
  7. iQOO 15 May Come With Five Years OS Upgrades, Seven Years Security Update
  8. Apple MacBook Pro OLED Redesign Expected Only on M6 Pro and M6 Max Versions
  9. Microsoft's Future AI Agents Will Behave as Independent Users
  10. Oppo Announces Launch of Reno 15 Series in China for This Date
  1. Samsung Galaxy S26, Galaxy S26+ Camera and Battery Details Leak; Incremental Upgrades Expected
  2. Arc Raiders Reportedly Sells 2.5 Million Copies, Hits 450,000 Concurrent Players on Steam
  3. WhatsApp Rolling Out Media Hub to Easily Browse Shared Images, Videos and More Shared Across Chat: Report
  4. Microsoft Is Developing New AI Agents for Enterprises That Behave as Independent Users
  5. iQOO 15 to Come With Five Years OS Upgrades, Seven Years Security Update: Report
  6. Apple Reportedly Developing Satellite-Powered Maps, Photo Sharing via Satellite on iPhone
  7. UIDAI Launches New Aadhaar App for Android and iOS Users, Makes It Easier to Store and Share ID
  8. Motorola Edge 70 Ultra Key Specifications Leaked Online: Snapdragon 8 Gen 5 SoC, OLED Display, and More
  9. Apple Will Reportedly Pay Google $1 Billion Per Year to Use Gemini Model for Siri
  10. OnePlus Ace 6 Pro Max Could Launch as OnePlus Ace 6T; Tipped to Come With Snapdragon 8 Gen 5 SoC
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.