기본 콘텐츠로 건너뛰기

Hackers Stole a Third of Singapore's Healthcare Data, Including Prime Minister's

Singapore's Ministry of Health (MOH) revealed today that a hacker had breached its IT systems and stolen personal and health-related data on roughly 1.5 million citizens.
MOH officials said this was not the work of casual hackers or criminal gangs but a deliberate and well-planned attack that sought to gather health information on the country's prime minister.
"The attackers specifically and repeatedly targeted Prime Minister Lee Hsien Loong’s personal particulars and information on his outpatient dispensed medicines," the MOH said in a statement.

Data stolen for 1.5 million citizens

The hackers were successful in exfiltrating Prime Minister's Lee data. According to MOH, hackers stole data for around 1.5 million patients who visited SingHealth’s specialist outpatient clinics and polyclinics from 1 May 2015 to 4 July 2018.
Officials say the stolen data included details such as name, NRIC number, address, gender, race, and date of birth. For 160,000 patients, the data also included details on dispensed medicines.
Data such as diagnosis details, test results, or doctors' notes, were not stolen. Officials said hackers didn't edit or delete any patient records, but only exfiltrated it to a remote server.

Hackers had been stealing data for eight days when discovered

According to the findings of a preliminary investigation, hackers had breached MOH's systems last month, and had exfiltrated data from June 27 to July 4, when officials discovered the breach.
MOH said it notified law enforcement, secured its network, and will be contacting affected citizens in the coming days.
Protective measures included resetting all user and systems accounts, placing additional controls on workstations and servers, setting up additional system monitoring controls, and temporarily imposing Internet surfing separation.

Intruders believed to be nation-state hackers

While there were some theories online that the hack may be related to the 2018 North Korea–United States summit that took place at the start of June, the incident actually took place after the event, and doesn't appear to be related.
Nonetheless, security experts didn't rule out this attack being the work of a nation-state actor.
"Health records contain information that is valuable to governments and they are often targeted by nation-state threat actors," Eric Hoh, President of Asia Pacific at FireEye, told Bleeping Computer via email today.
"Nation-states increasingly collect intelligence through cyber espionage operations which exploit the very technology we rely upon in our daily lives," he added, suggesting that anyone has at least some value in the eyes of a foreign actor.
"A cyber espionage threat actor could leverage disclosure of sensitive health information, or financial health related vulnerabilities to coerce an individual in position of interest to conduct espionage," he added.

Singapore lauded for fast response

Neither Hoh nor FireEye put forward any theory on which nation-state actor might have been behind the hack. But Hoh did praise Singapore officials for revealing the hack to its citizens and not covering it up.
"Singapore ranks among the leaders in cyber security, and we would like to see more governments follow their lead in disclosing breaches," Hoh said. "Disclosure enables other organizations to take steps to improve their defenses against similar attacks."
The Singapore hack is a happy ending incident. Hoh said that on average, Asia Pacific organizations usually take 498 days before they detect intruders in their networks.
"Against those metrics, this is a relatively fast response," Hoh added.

By  July 20, 2018

댓글

이 블로그의 인기 게시물

BLACK LABEL Secured Automobile Smart Key Solution

Developed by MERCEDES BENZ for the first time 20 years ago, the SmartKey has been very convenient for motorists. However, since this technology has been applied so far, the smart key security has not been upgraded so that even if a simple wireless hacking device is purchased on the market, the password which is exchanged between the car and the smart key is wirelessly captured, the car door is opened, Things are happening in a random way. The biggest problem in smart key security so far is that the identification code exchanged between the smart key and the key is a fixed value and the security is difficult to hack the fixed single code value. However, if a mutual verification system, which is a security solution of BLACK LABEL, is applied to a smart key and a vehicle, it is impossible to access the vehicle even if the identification code value is fixed in a single code, Can be made. This is because the code that has been changed once and then discarded is discarded. ...

Avoiding Cryptocurrency Scams

The Money Makers Club now has 6 of 15 available seats. Learn more here! Everyone is always focused on the potential upside of buying cryptocurrency, but they forget there are always going to be hidden downsides as well. The downside risk of investing in cryptocurrencies is huge. Not only do you need to worry about the high volatility of these assets, but you also need to bear in mind that theft is always a possibility, and the assets are poorly regulated.  Lack of Regulation Creates Opportunity for Thieves In the equity and debt markets, there are stringent controls on the way capital is invested and the rules that govern investors. The goal is to protect investors from any fraud or wrongdoing, and even though there are times where it takes regulators longer than normal to catch on (see: Bernie Madoff), the general effect is a safer investment marketplace.  Fraud can occur in a variety of ways. It can be the result of false claims by the company regarding the s...

Cold Wallet Vs. Hot Wallet: What’s The Difference?

You may have heard about cold and hot digital wallets but do you know how they are different from each other? The simplest way to describe the difference between a cold wallet and a hot one is this: hot wallets are connected to the internet while cold wallets are not. Most people who hold digital assets have both cold and hot wallets because they are designed for different purposes. Hot wallets are like checking accounts while cold wallets are similar to savings accounts. People who have digital assets keep a small amount of money in their hot wallets for purchasing stuff. They keep the vast majority of their digital coins in their cold wallet. If you like Medium articles in video form, you’re in luck: SECURITY Q: Why do people keep most of their digital coins in a cold wallet? A: Hackers cannot steal digital assets that are not connected to the internet. Q: So then, how safe are hot wallets? A: The security of hot wallets is dependent upon the security ha...