Healthcare Vendor ITx  Reports Yet Another GoAnywhere Hack

In a breach report filed June 8th, revenue cycle software vendor ITx joined the list of healthcare companies to announce a Fortra-related breach – this one affecting nearly 490,000 individuals. 

ITx took the following actions after Fortra disclosed the flaw that was being actively exploited:

  • Feb. 8th – ITx discovered it had been subject to a Forta security incident  
  • May 10th – Review was completed of all relevant logs provided by Fortra  
  • May 19th – Review was completed to determine what and whose information was affected 
  • June 8th – Breach report filed 

Information compromised in ITx’s Fortra incident includes patients’ names, addresses, medical billing and insurance information, medical information, and demographic information such as birthdate and SSNs. 

To date, the GoAnywhere vulnerability has affected the health information of about 4.4 million individuals at Blue Shield of California, Aetna and Santa Clara Family Health Plan, Brightline, Community Health System, and NationsBenefits, to name a few.

Avkash Kathiriya, SVP of Research and Innovation, Cyware had this to say:

   “We are facing an epidemic of healthcare-related breaches, and most organizations continue to fight this battle alone. Healthcare providers need much better visibility of weaknesses, and the ability to share threat intelligence throughout their supply chains. While every entity in the supply chain may not be adequately prepared to counter sophisticated cyber threats, together they can mount a collective defense against the common threats faced by the sector.”

GoAnywhere keeps claiming victims which is not good for any of us. I fully expect the carnage that has been caused by this vulnerability to continue for a long time.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading