Ransomware gang claims duty for Kettering Well being hack | TechCrunch


A ransomware gang claimed duty for the hack on Kettering Well being, a community of hospitals, clinics, and medical facilities in Ohio. The healthcare system remains to be recovering two weeks after the ransomware assault compelled it to close down all its pc methods. 

Interlock, a comparatively new ransomware group that has targeted healthcare organizations in the U.S. since September 2024, printed a submit on its official darkish site, claiming to have stolen greater than 940 gigabytes of knowledge from Kettering Well being.

CNN first reported on Might 20 that Interlock was behind the breach on Kettering Well being. On the time, nevertheless, Interlock had not publicly taken credit score. Often, that may imply the cybercriminals are trying to extort a ransom from their victims, threatening to launch stolen knowledge. The truth that Interlock has now come ahead might point out that the negotiations have gone nowhere.

Contact Us

Do you may have extra details about Kettering Well being’s ransomware incident? Or different ransomware assaults? From a non-work machine and community, you may contact Lorenzo Franceschi-Bicchierai securely on Sign at +1 917 257 1382, or by way of Telegram and Keybase @lorenzofb, or e mail.

Kettering Well being’s senior vp of emergency operations, John Weimer, beforehand advised native media that the healthcare firm had not paid the hackers a ransom.

TK, a spokesperson for Kettering Well being, didn’t present remark when reached by TechCrunch on Wednesday. 

Interlock didn’t reply to a request for remark despatched to an e mail tackle listed on its darkish site.

A quick assessment of a number of the information Interlock printed on its darkish site seems to indicate the hackers had been in a position to steal an array of knowledge from Kettering Well being’s inside community, together with: non-public well being data, similar to affected person names, affected person numbers, and scientific summaries written by medical doctors, which embody classes similar to psychological standing, drugs, well being issues, and different classes of affected person knowledge. Different stolen knowledge contains worker knowledge and the contents of shared drives. 

One of many folders incorporates paperwork, similar to background information, polygraphs, and different non-public figuring out data of cops with Kettering Well being Police Division.

On Monday, Kettering Well being published an update on the cyberattack, saying the corporate was in a position to restore “core elements” of its digital well being report system, which is supplied by Epic, a healthcare software program firm. The corporate stated this was “a serious milestone in our broader restoration efforts and a significant step towards returning to regular operations,” that enables it to “to replace and entry digital well being information, facilitate communication throughout care groups, and coordinate affected person care with larger velocity and readability.”

Leave a Reply

Your email address will not be published. Required fields are marked *