#UnitedHealth's 'egregious negligence' led to #ChangeHealthcare #ransomware infection

'I'm blown away by the fact that they weren't using MFA'

The #cybersecurity practices that led up to the stunning Change Healthcare ransomware infection indicate "egregious negligence" on the part of parent company UnitedHealth, according to Tom Kellermann, SVP of cyber strategy at Contrast Security.

https://www.theregister.com/2024/05/08/unitedhealths_egregious_negligence/

Reply to this note

Please Login to reply.

Discussion

This was a big deal. It created many issues at my work. And to find out that some higher ups didn’t even know some of their external servers didn’t have MFA is crazy.

It did bring light to a lot of issues in healthcare with security and third party risk.