Change Healthcare hackers used stolen credentials and no MFA, says UHG CEO
techcrunch.com
techcrunch.com
Hackers Broke into Change Healthcare's Systems 9 Days Before Cyberattack (https://news.ycombinator.com/item?id=40127483) - Apr 2024 (27 comments)
BlackCat ransomware group implodes after apparent payment by Change Healthcare (https://news.ycombinator.com/item?id=39610846) - Mar 2024 (162 comments)
UnitedHealth says Change hackers stole health data on ‘substantial proportion of people in America’ (https://techcrunch.com/2024/04/22/unitedhealth-change-health...)
This Reuters[0] article is much more specific about saying it was a Citrix vulnerability, but since Citrix has not issued an official statement, it's better to have it changed to the default title.
[0]: https://www.reuters.com/technology/cybersecurity/unitedhealt...
(Submitted title was "UnitedHealth hackers exploited Citrix bug, CEO says")
And then Verizon allegedly allowed it to happen again a few days later after they had thought the original phones/sims shut down