Bits ‘n Pieces (Trozos y Piezas)

CO: SECOP II platform affected by “presumed hacking” The SECOP II platform is a transactional platform with accounts for state entities and contractors used for submitting, evaluating, and awarding contracts.  On May 3, La Agencia Nacional de Contratación Pública – Colombia Compra Eficiente reported a cyberattack on its SECOP II platform. The attack was...

CommonSpirit expects to recover most of its $160M cyberattack costs

Nick Thomas reports: Chicago-based CommonSpirit, one of the largest nonprofit health systems in the nation, upped its current estimate of losses stemming from a cyberattack in October to $160 million when it released first-quarter results May 15. The original cost amount was estimated at $150 million. The better news is that the 143-hospital system is confident...

Amsterdam court hears case against alleged hacker, “DataBox”

DataBreaches previously reported that Dutch police arrested a 25-year-old man from Almere in November of 2022. Erkan S., known as “DataBox” on RaidForums, has been in custody since then. He was charged with dumping the GIS (Gebühren Info Service GmbH) data of nine million Austrians and listing it for sale on RaidForums in May...

Norton Healthcare update on cyberattack

Norton Healthcare has six hospitals in Kentucky and one in Indiana. Since May 9, they have been working on recovering from a cyberattack. They don’t call it a ransomware attack but if they received faxed threats and demands as they state in their update, it was likely either a ransomware attack or someone skipped...

Cybersecurity attack against Amazon-owned online pharmacy PillPack exposed user health data

Annie Burky reports: Amazon-owned PillPack reported a cybersecurity attack affecting the accounts of nearly 20,000 customers. An unauthorized person used customer emails and passwords to log into PillPack customer accounts, over 3,000 of which contained prescription information. Social Security numbers and payment information were not involved in the attack, according to the online pharmacy....

The Underground History of Russia’s Most Ingenious Hacker Group

Andy Greenberg writes: Ask western cybersecurity intelligence analysts who their “favorite” group of foreign state-sponsored hackers is—the adversary they can’t help but grudgingly admire and obsessively study—and most won’t name any of the multitudes of hacking groups working on behalf of China or North Korea. Not China’s APT41, with its brazen sprees of supply chain attacks,...