Threat Intelligence Brief
Curated summary with source attribution
Source: dexpose.io
Threat Risk: High
Victim: Healthcare billing services provider
Incident: Ransomware attack and data exfiltration by the Pear group.
Impact: Potential exposure of sensitive Medi-Cal billing and patient-related data.
Attacker: Pear ransomware group
Analysis: The Pear ransomware group has claimed a breach of Practi-Cal, a U.S.-based firm providing billing solutions for Medi-Cal. The attackers are utilizing a double-extortion tactic, threatening to publish sensitive data if their demands are not met. This attack underscores the vulnerability of mid-sized firms handling sensitive healthcare financial data.
Recommendations: Implement and enforce multi-factor authentication (MFA) across all external access points.; Maintain immutable, offline backups to ensure rapid recovery from encryption events.; Regularly monitor dark web forums and leak sites for compromised corporate credentials.
Source: DeXpose
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source