Thursday, December 08, 2022

VULNERABLE+INSECURE AFTER ALL THESE YEARS...| Bleeping Computer

 


www.bleepingcomputer.com

US Health Dept warns of Royal Ransomware targeting healthcare

Sergiu Gatlan
4 - 5 minutes

Chess king

"The U.S. Department of Health and Human Services (HHS) issued a new warning today for the country's healthcare organizations regarding ongoing attacks from a relatively new operation, the Royal ransomware gang.

The Health Sector Cybersecurity Coordination Center (HC3) —HHS' security team— revealed in a new analyst note published Wednesday that the ransomware group has been behind multiple attacks against U.S. healthcare orgs.

"Since its appearance, HC3 is aware of attacks against the Healthcare and Public Healthcare (HPH) sector," the advisory says.

"Due to the historical nature of ransomware victimizing the healthcare community, Royal should be considered a threat to the HPH sector."

This ransomware group is focused on targeting U.S. healthcare organizations based on past successful attacks.

Until now, Royal also claimed following each healthcare compromise that they leaked all data allegedly stolen from the victims' networks online.

Sharp increase in activity since September

The Royal Ransomware gang is a private operation without affiliates and made up of experienced threat actors who worked for other groups.

Since September 2022, Royal operators have been quickly ramping up malicious activities, months after being first spotted in January 2022.

While initially, they used encryptors from other gangs like BlackCat, they quickly switched to using their own encryptors, the first being Zeon which generated Conti-like ransom notes.

Starting in mid-September, the ransomware gang rebranded again to "Royal" and uses a new encryptor that generates ransom notes with the same name.

Unusually for a ransomware gang, the group also uses social engineering to trick corporate victims into installing remote access software following callback phishing attacks where the attackers impersonate software providers and food delivery services.

After infecting their targets and encrypting systems on their enterprise network, Royal will demand ransom payments ranging from $250,000 to $2 million.

Another one of Royal's uncommon tactics is using hacked Twitter accounts to tweet information on compromised targets to journalists to have the attack covered by news outlets and put additional pressure on their victims.

These tweets will be tweeted at journalists and the owners of companies, containing a link to the leaked data allegedly stolen from victims' networks before deploying the encryptor.

Royal ransomware ID Ransomware submissions
Royal ransomware submissions (ID Ransomware)

​Healthcare under attack

The federal government has also warned about other ransomware operations known for actively targeting healthcare organizations across the U.S.

For instance, last month, HHS warned of Venus ransomware impacting the country's healthcare, with at least one entity known to have fallen victim to its attacks.

Previous alerts notified Healthcare and Public Health (HPH) organizations of threat actors deploying Maui and Zeppelin ransomware payloads.

A joint advisory issued by CISA, FBI, and HHS warned in October that the Daixin Team cybercrime group also targets the HPH sector in ongoing ransomware attacks.

Last but not least, Professional Finance Company Inc (PFC), a Colorado-based full-service accounts receivables management firm, shared in a data breach notification in July about a Quantum ransomware attack from late February that led to a data breach affecting 657 healthcare orgs.

However, the attack could've had a much more significant impact seeing that PFC helps thousands of U.S. healthcare, government, and utility organizations to ensure that customers pay their invoices on time."

Related Articles:

US Health Dept warns of Venus ransomware targeting healthcare orgs

FBI: Zeppelin ransomware may encrypt devices multiple times in attacks

US govt warns of Daixin Team targeting health orgs with ransomware

CISA orders agencies to patch exploited Google Chrome bug by Dec 26th

FBI: Hive ransomware extorted $100M from over 1,300 victims

Arizona 5th.District Congressman Andy Biggs: Screecher of The House

 



 He's definitely OTN all over-the-news 

53 minutes ago · Rep. Andy Biggs, R-Ariz., on why he is challenging Rep. Kevin McCarthy for House speaker instead of supporting him.

The far-right lawmaker announced his plan Monday night on Newsmax, as Republicans creep ever closer to controlling the House of Representatives.

2 days ago · It hasn't taken multiple ballots to elect a House speaker in a century—but Biggs seems intent on making that happen next year. . . READ MORE

Biggs says he’ll challenge McCarthy for House speaker on Jan. 3

Rep. Andy Biggs, who failed three weeks ago in a vote among House Republicans to lead the conference, is mounting another challenge to Rep. Kevin McCarthy (R-Calif.) — for speaker.

December 6, 2022
Rep. Andy Biggs (R-Ariz.) speaks onstage before a rally ahead of the midterm elections in Mesa, Ariz., on Oct. 9.
www.axios.com

Rep. Andy Biggs challenges McCarthy for House speaker

Andrew Solender
2 - 3 minutes

"Rep. Andy Biggs (R-Ariz.), the former chair of the right-wing Freedom Caucus, on Tuesday announced he is running against House Minority Leader Kevin McCarthy (R-Calif.) for speaker of the House.

Why it matters: Biggs' candidacy gives McCarthy detractors a candidate to rally around, further complicating his already perilous path to the speakership.

  • When the House votes for speaker on Jan. 3, McCarthy will need the support of a majority of members voting for a candidate. "Present" votes won't count against him, but votes for Biggs or another candidate will.

What they're saying: Biggs announced his candidacy in an op-ed for the conservative Daily Caller, urging colleagues to "break the establishment."

  • "We cannot let this all too rare opportunity to effectuate structural change pass us by because it is uncomfortable to challenge the Republican candidate who is a creature of the establishment status quo, or because the challenge is accompanied by some minimal risk," Biggs wrote.
  • Biggs also cited instances where McCarthy was disloyal to Trump, such as privately floating censure in the aftermath of Jan. 6 and his initial support for Rep. Liz Cheney (R-Wyo.), who voted for Trump's impeachment.

By the numbers: Five House Republicans, all Freedom Caucus members, have come out publicly against McCarthy, with only one leaving even slight wiggle room.

  • With McCarthy headed for a narrow majority, that could be enough to block him from getting the gavel.
  • One of the votes, Rep. Bob Good (R-Va.), has previously told Axios he would vote for Biggs. All have said they don't plan to vote present.
  • Axios has reached out to a spokesperson for McCarthy for comment.

This story has been updated with additional information.

Go deeper 


RELATED CONTENT

andy biggs from m.facebook.com
Congressman Andy Biggs. 39345 likes · 5209 talking about this. Congressman Andy Biggs is a third-term Representative from Arizona's Fifth Congressional...
*Includes contributions from other candidate committees. NOTE: All the numbers on this page are for the 2021 - 2022 election cycle and based on Federal Election ...






 

 

 

 

 

 

 

 

 

 

VIDEO 

andy biggs from mobile.twitter.com
Duration: 0:44
Posted: Nov 8, 2022

 

Imperialst Rhetoric, Tom Horn to Defuse Tensions, Gold Tops $5,000 in Demand Frenzy, . . .Japan Bond Crash

         Stephen Maturen/Getty Images Trump, Democrats Hurtle Toward Shutdown After Minnesota Killing A fatal shooting by Border Patrol agen...