US disrupts North Korean hackers that targeted hospitals

Jul 18, 2022, 7:26 PM | Updated: Jul 19, 2022, 6:18 pm

FILE - Deputy Attorney General Lisa Monaco speaks during the Chiefs of Police Executive Forum, at t...

FILE - Deputy Attorney General Lisa Monaco speaks during the Chiefs of Police Executive Forum, at the United States Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) headquarters in Washington, May 6, 2022. The FBI and Justice Department recently disrupted the activities of a hacking group that was sponsored by the North Korean government and that targeted U.S. hospitals with ransomware, ultimately recovering half a million dollars in ransom payments, Monaco said Tuesday, July 19. (Sarah Silbiger/Pool Photo via AP, File)

(Sarah Silbiger/Pool Photo via AP, File)

NEW YORK (AP) — The FBI and Justice Department recently disrupted the activities of a hacking group that was sponsored by the North Korean government and that targeted U.S. hospitals with ransomware, ultimately recovering half a million dollars in ransom payments and cryptocurrency, Deputy Attorney General Lisa Monaco said Tuesday.

Monaco revealed new details of the attacks during a speech in which she encouraged organizations hit by ransomware to report the crime to law enforcement, both so that officials can investigate and so that they can help victim companies try to get ransom payments back.

In this case, Monaco said, a Kansas hospital that paid a ransom last year after being attacked by ransomware also contacted the FBI, which traced the payment and identified China-based money launderers who assisted the North Korean hackers in cashing out the illicit proceeds. The FBI was able to recover half a million dollars, including the entire ransom payment from the hospital.

“If you report that attack, if you report the ransom demand and payment, if you work with the FBI, we can take action,” Monaco said at the International Conference on Cyber Security, hosted by Fordham University. “We can follow the money and get it back; we can help prevent the next attack, the next victim; and we can hold cybercriminals accountable.”

U.S. officials in 2021 scrambled to confront a wave of high-profile ransomware attacks — in which hackers encrypt or lock up a victim’s data and demand exorbitant sums to return it — including against a crucial fuel pipeline on the East Coast. Though the pace of such large-scale, front-page attacks seems to have slowed, smaller targets — such as hospitals — continue to be affected.

FBI Director Christopher Wray said at the same conference that a particular challenge is that ransomware, once largely the province of garden-variety cyber criminals looking to extort cash, is now being increasingly deployed by hostile governments who are eager for destruction.

“The other thing we’re seeing more and more of is ransomware actors doing more than just locking up the system,” Wray said. “They’re exfiltrating the information, they’re threatening to release your proprietary information.”

This particular variant of ransomware, known as “Maui,” specifically targeted hospitals and public health organizations around the country.

Justice Department officials say the attack on the Kansas hospital, which they did not identify, took place in May 2021 when hackers encrypted the medical center’s files and servers. The hospital paid about $100,000 in Bitcoin to get its data back.

The department said that in addition to recovering the payment from the Kansas hospital, it also got back a payment from a health care provider in Colorado that was affected by the same Maui ransomware variant.

____

Follow Eric Tucker at http://www.twitter.com/etuckerAP

Copyright © The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.

AP

biden crisis averted...

Zeke Miller and Chris Megerian

Biden celebrates a ‘crisis averted’ in Oval Office address on bipartisan debt ceiling deal

President Joe Biden celebrated a “crisis averted” in his first speech to the nation from the Oval Office Friday evening.

2 days ago

Margrethe Vestager, Executive Vice-President for A Europe Fit for the Digital Age and Competition, ...

Associated Press

US, Europe working on voluntary AI code of conduct as calls grow for regulation

The United States and Europe are drawing up a voluntary code of conduct for artificial intelligence as the developing technology triggers warnings

2 days ago

FILE - Idaho Attorney General candidate Rep. Raul Labrador speaks during the Idaho Republican Party...

Associated Press

Families sue to block Idaho law barring gender-affirming care for minors

The families of two transgender teenagers filed a lawsuit Thursday to block enforcement of Idaho's ban on gender-affirming medical care for minors.

3 days ago

Amazon agreed Wednesday to pay a $25 million civil penalty to settle Federal Trade Commission alleg...

Associated Press

Amazon fined $25M for violating child privacy with Alexa

Amazon agreed Wednesday to pay a $25 million civil penalty to settle Federal Trade Commission allegations it violated a child privacy law

3 days ago

FILE - Candles are lit on a memorial wall during an anniversary memorial service at the Holy Trinit...

Associated Press

Pain and terror felt by passengers before Boeing Max crashed can be considered, judge rules

Families of passengers who died in the crash of a Boeing 737 Max in Ethiopia can seek damages for the pain and terror suffered by victims in the minutes before the plane flew nose-down into the ground, a federal judge has ruled.

4 days ago

OpenAI's CEO Sam Altman, the founder of ChatGPT and creator of OpenAI speaks at University College ...

Associated Press

Artificial intelligence threatens extinction, experts say in new warning

Scientists and tech industry leaders issued a new warning Tuesday about the perils that artificial intelligence poses to humankind.

4 days ago

Sponsored Articles

Men's Health Month...

Men’s Health Month: Why It’s Important to Speak About Your Health

June is Men’s Health Month, with the goal to raise awareness about men’s health and to encourage men to speak about their health.

Internet Washington...

Major Internet Upgrade and Expansion Planned This Year in Washington State

Comcast is investing $280 million this year to offer multi-gigabit Internet speeds to more than four million locations.

Compassion International...

Brock Huard and Friends Rally Around The Fight for First Campaign

Professional athletes are teaming up to prevent infant mortality and empower women at risk in communities facing severe poverty.

Emergency Preparedness...

Prepare for the next disaster at the Emergency Preparedness Conference

Being prepared before the next emergency arrives is key to preserving businesses and organizations of many kinds.

SHIBA volunteer...

Volunteer to help people understand their Medicare options!

If you’re retired or getting ready to retire and looking for new ways to stay active, becoming a SHIBA volunteer could be for you!

safety from crime...

As crime increases, our safety measures must too

It's easy to be accused of fearmongering regarding crime, but Seattle residents might have good reason to be concerned for their safety.

US disrupts North Korean hackers that targeted hospitals