Data breach at Finnish psychotherapy center takes a darker turn with extortion attempts
Full article609 words · extracted from cyberscoop.com · click to collapse
Get our latest cybersecurity news first on Google.
Cybercriminals reportedly posted batches of Vastaamo's patient information on the dark web and claimed that individual people could protect their data by directly paying a ransom.
The response to a data breach at a prominent Finnish psychotherapy practice intensified over the weekend after cybercriminals reportedly posted batches of patient information on the dark web and claimed that individual people could protect their data by directly paying a ransom.
The breach at Vastaamo, which has locations throughout Finland, prompted an emergency meeting of the country’s Cabinet on Sunday. The company said the incident happened as early as November 2018. Local news reports say the attackers didn’t contact Vastaamo with any demands until September of this year.
Neither the company nor Finnish investigators have released many details about the nature of the breach, but reports say the attackers initially sought a payment of about 450,000 euros to protect about 40,000 patient records. The company reportedly did not pay up. Given the scale of the attack and the sensitive nature of the stolen data, the case has become a national story in Finland. Globally, attacks on health care organizations have escalated as cybercriminals look for higher-value targets.
Cybersecurity researcher Mikko Hyppönen told Finnish newspaper Ilta-Sanomat that the breach is probably the work of more than just one person. The case is highly unusual, according to the researcher, in that it’s rare to see this level of blackmail in a health care data breach. Hyppönen is research director for Helsinki-based F-Secure.
Vastaamo said customers and employees had “personally been victims of extortion” in the case. Reports say that on Oct. 21 and Oct. 22, the cybercriminals began posting batches of about 100 patient records on the dark web and allowing people to pay about 500 euros to have their information taken down.
The company has opened a crisis hotline for patients to call, with therapists available for free, and says it is working with credit-reporting organizations to protect the personally identifiable information of anyone affected by the breach.
In a statement Monday, Interior Minister Maria Ohisalo called the extortion attempts “exceptionally cowardly.”
“We must not give in to the blackmailers, and the perpetrators must be held accountable for their actions,” she said, according to a translation of her statement.
Vastaamo, which operates as a subcontractor for Finland’s national health system, said that as far as it knows, patient data created after November 2018 was not breached.
Latest Podcasts
Government
FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching
Feds accuse China of ‘systematic’ distillation of U.S. AI models
CIA’s Michael Ellis says cyber intelligence is changing how the agency operates
The G7 tells industry to hurry up and prep for post-quantum encryption
Technology
Threats
Chinese espionage groups swarm to exploit triple-link chain of zero-days
Microsoft discloses two actively exploited zero-days among 974 vulnerabilities
Russian national extradited to US for alleged involvement in bank-account takeover scheme
Attackers exploit zero-days in consistently besieged SonicWall product
Policy
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/finnish-psychotherapy-data-breach-vastaamo/