pwshub.com

Planned Parenthood scrambles to repair IT after cyber-attack

Planned Parenthood of Montana's chief exec says the org is responding to a cyber-attack on its systems, and has drafted in federal law enforcement and infosec professionals to help investigate and rebuild its IT environment.

This comes as ransomware crew RansomHub boasted it had broken into the nonprofit, and stolen its data, which it is threatening to leak unless payment is made.

According to Martha Fuller, CEO and president of the US state's Planned Parenthood office, a network intrusion – or a "cybersecurity incident" as the org put it – was spotted on August 28. 

"We immediately implemented our incident response protocols, including taking portions of our network offline as a proactive security measure," Fuller told The Register in an emailed statement.

"We are grateful to our IT staff and cyber security partners, who are working around the clock to securely restore impacted systems as quickly as possible, and who are tirelessly investigating the cause and scope of the incident," she added. "That investigation is ongoing."

RansomHub claims to have snatched 93 GB of the organization's data, and says it will share it online in seven days unless the nonprofit pays. We should note: Nonprofits are not known for their deep pockets and ability to pay multi-million ransom demands.

Fuller declined to answer specific questions about the network intrusion, including what, if any, data was stolen in the attack, and if RansomHub was behind the break-in. She did, however, acknowledge the criminals' claims and threats to leak the stolen data.

"We are aware of the RansomHub post, and want to assure our community that we are taking this matter very seriously," Fuller said. "We have reported this incident to federal law enforcement, and will support their investigation."

  • RansomHub hits 210 victims in just 6 months
  • Ransomware batters critical industries, but takedowns hint at relief
  • RansomHub-linked EDR-killing malware spotted in the wild
  • Six ransomware gangs behind over 50% of 2024 attacks

The FBI did not immediately respond to The Register's inquiries.

The Planned Parenthood office security breach, however, happened a day before the FBI, CISA, and other US government agencies issued a security alert warning that RansomHub was aggressively targeting victims as recently as August.

The criminal organization, which has been scooping up former LockBit and ALPHV gang members as law enforcement has disrupted those groups, has hit at least 210 victims since February, according to the Feds.

These victims span water and wastewater, information technology, government services and facilities, healthcare and public health, emergency services, food and agriculture, financial services, commercial facilities, critical manufacturing, transportation, and communications critical infrastructure sectors.

May we add, infecting a nonprofit that provides reproductive healthcare services across the country is an especially low act, even for a ransomware crew. ®

Source: theregister.com

Related stories
19 hours ago - Plus: Wray tells how bureau helps certain victims negotiate with ransomware crooks China-backed spies are said to have tore down their own 260,000-device botnet after the FBI and its international pals went after them.…
1 week ago - Criminals with plenty of time on their hands may now have credit card details Around 1.7 million people will receive a letter from Florida-based Slim CD, if they haven't already, after the company detected an intrusion dating back nearly...
1 week ago - 'Insider wrongdoing' to blame for the breach Avis Rent A Car System has alerted 299,006 customers across multiple US states that their personal information was stolen in an August data breach.…
1 month ago - Names, addresses, Social Security numbers, more all out there A Florida firm has all but confirmed that millions of people's sensitive personal info was stolen from it by cybercriminals and publicly leaked.…
1 month ago - A study finds promising results on a new HIV prevention drug that's injected just twice a year. In the meantime, here's everything to know about HIV testing.
Other stories
39 minutes ago - Experts at the Netherlands Institute for Radio Astronomy (ASTRON) claim that second-generation, or "V2," Mini Starlink satellites emit interference that is a staggering 32 times stronger than that from previous models. Director Jessica...
39 minutes ago - The PKfail incident shocked the computer industry, exposing a deeply hidden flaw within the core of modern firmware infrastructure. The researchers who uncovered the issue have returned with new data, offering a more realistic assessment...
39 minutes ago - Nighttime anxiety can really mess up your ability to sleep at night. Here's what you can do about it right now.
39 minutes ago - With spectacular visuals and incredible combat, I cannot wait for Veilguard to launch on Oct. 31.
39 minutes ago - Finding the perfect pair of glasses is difficult, but here's how to do so while considering your face shape, skin tone, lifestyle and personality.