Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
Summarized from techcrunch.com
The hacking group ShinyHunters has claimed responsibility for a recent cyberattack on U.S. pharmaceutical distribution giant McKesson, resulting in the theft of highly sensitive health data. According to ShinyHunters, the group gained unauthorized access to McKesson’s cloud environment by employing phishing and social engineering tactics to trick employees into granting network access. The stolen data includes personal information such as names, addresses, and Social Security numbers, as well as protected health information like diagnoses, medications, allergies, and patient notes. The hackers assert that they extracted millions of records from McKesson’s cloud-hosted Snowflake and Salesforce environments but are uncertain about the exact number of individuals affected. Additionally, the stolen data encompasses information about McKesson employees, including their home addresses.
McKesson confirmed the breach in a statement, acknowledging that hackers infiltrated several of its cloud-hosted accounts and exfiltrated data, leading to anticipated “intermittent service degradation.” The company’s Chief Technology Officer, Francisco Fraga, specified that the compromised data pertains to McKesson’s oncology & multispecialty and medical-surgical units. While McKesson maintains that it continues to operate across all business lines and believes there is no ongoing unauthorized activity, the company declined to provide further details to TechCrunch, such as the ransom demand or the number of individuals impacted. This incident is part of a recent surge in cyberattacks targeting healthcare companies and medical device manufacturers, with hackers seeking to extort sensitive medical data. Source