Becker's Healthcare June 26, 2024
The FBI and HHS have issued a joint alert to healthcare leaders about a social engineering campaign targeting healthcare organizations.
According to the June 24 alert, hackers are using phishing schemes to steal login credentials, enabling unauthorized access and diversion of automated clearing house (ACH) payments to U.S.-controlled bank accounts. These attacks often begin with hackers gaining access to employees’ email accounts through social engineering or phishing. Once access is gained, they specifically target login information related to reimbursement payments for insurance companies and Medicare.
Notable methods include:
- Impersonating employees to manipulate IT help desk personnel and bypass multifactor authentication.
- Registering phishing...