{"id":75581,"date":"2015-02-19T20:53:25","date_gmt":"2015-02-20T01:53:25","guid":{"rendered":"http:\/\/rbach.net\/blog\/index.php\/"},"modified":"2022-08-12T15:59:10","modified_gmt":"2022-08-12T19:59:10","slug":"anthem-data-breach-allows-phish-of-us-cyber-forces","status":"publish","type":"post","link":"https:\/\/rbach.net\/index.php\/anthem-data-breach-allows-phish-of-us-cyber-forces\/","title":{"rendered":"Anthem Data Breach Allows Phish of US Cyber Forces"},"content":{"rendered":"<p><strong><a href=\"https:\/\/www.onestopbrokers.com\/2017\/09\/26\/citibank-citigroup-global-markets-limited-pay-hundreds-thousands-dollars-penalty\/\" target=\"_blank\" rel=\"$16 anthem hipaa record fine for million noopener noreferrer\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignleft\" title=\"Anthem Data Breach Allows Phish of US Cyber Forces\" src=\"https:\/\/i0.wp.com\/www.onestopbrokers.com\/wp-content\/uploads\/2016\/12\/bank-fines-685x320.png?resize=140%2C65&#038;ssl=1\" alt=\"Anthem Data Breach Allows Phish of US Cyber Forces\" width=\"140\" height=\"65\" \/><\/a>&#8211; Updated 10\/25\/2018 &#8211;<\/strong> Anthem, Inc. has agreed to pay a <strong>$16 million HIPAA fine<\/strong> to the U.S. Department of Health and Human Service, Office for Civil Rights. The OCR found that the data breach between December 2, 2014, and January 27, 2015, cyber-attackers stole the <strong>electronic protected health information of almost 79 million people<\/strong>. The stolen information in the data breach included names, social security numbers, medical identification numbers, addresses, dates of birth, email addresses, and employment information.<\/p>\n<p>The $16 million settlement is the <strong>largest HIPAA settlement<\/strong>.<\/p>\n<p style=\"text-align: center;\">&#8212;<\/p>\n<p><a href=\"https:\/\/web.archive.org\/web\/20180903050534\/http:\/\/www.alarm.org\/HomeSafety\/FalseDispatch.aspx\" target=\"_blank\" rel=\"noopener noreferrer\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignleft wp-image-101834 size-medium\" title=\"Anthem Breach Allows Phish of US Cyber Forces\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/man-oops.jpg?resize=150%2C100&#038;ssl=1\" alt=\"Anthem Breach Allows Phish of US Cyber Forces\" width=\"150\" height=\"100\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/man-oops.jpg?resize=150%2C100&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/man-oops.jpg?resize=75%2C50&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/man-oops.jpg?w=350&amp;ssl=1 350w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/><\/a>Many online believe that the <strong><a title=\"Anthem\" href=\"https:\/\/web.archive.org\/web\/20160930172023\/https:\/\/www.anthem.com\/health-insurance\/home\/overview\" target=\"_blank\" rel=\"noopener noreferrer\">Anthem<\/a><\/strong> (<a title=\"NYSE | ANTM\" href=\"https:\/\/www.tradingview.com\/symbols\/NYSE-ELV\/\" target=\"_blank\" rel=\"nofollow noopener\">ANTM<\/a>) hack was a <strong>strategic cyber-war strike<\/strong> by China. <a title=\"Stu Sjouwerman\" href=\"https:\/\/www.linkedin.com\/in\/stusjouwerman\" target=\"_blank\" rel=\"noopener noreferrer\">Stu Sjouwerman<\/a> at\u00a0<a title=\"CyberheistNews\" href=\"http:\/\/blog.knowbe4.com\/\" target=\"_blank\" rel=\"noopener noreferrer\"><em>CyberheistNews<\/em><\/a> <a title=\"Chinese Phish All Identities of NSA, CIA, FBI and more...\" href=\"http:\/\/blog.knowbe4.com\/cyberheistnews-vol-5-4-chinese-phish-all-identities-of-nsa-cia-fbi-and-more\" target=\"_blank\" rel=\"noopener noreferrer\">writes<\/a> that PII thefts would normally be a Russian operation. However, the Anthem data breach appears to be a Chinese attack. <em><a title=\"CNN\" href=\"http:\/\/www.cnn.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">CNN<\/a><\/em> <a title=\"Anthem probe looking at China as possible source of hack\" href=\"http:\/\/money.cnn.com\/2015\/02\/06\/technology\/anthem-hack\/\" target=\"_blank\" rel=\"noopener noreferrer\">reports<\/a> that Chinese hackers tend to target trade, economic, and national security secrets that could help the <a title=\"Economy of the People's Republic of China\" href=\"http:\/\/en.wikipedia.org\/wiki\/Economy_of_the_People%27s_Republic_of_China\" target=\"_blank\" rel=\"nofollow noopener wikipedia noreferrer\">Chinese economy<\/a>. Mr.\u00a0Sjouwerman says he received an insider tip that most of the <strong>three-letter U.S. Government agencies<\/strong> have their employees insured through Anthem&#8217;s <a title=\"Blue Cross Blue Shield Association\" href=\"http:\/\/bcbs.com\/\" target=\"_blank\" rel=\"homepage nofollow noopener noreferrer\">Blue Cross Blue Shield<\/a>. Anthem also provided health insurance defense contractors <strong>Northrop Grumman<\/strong> and <strong>Boeing<\/strong>.<\/p>\n<p><a href=\"http:\/\/www.antheminc.com\/\" target=\"_blank\" rel=\"noopener noreferrer\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-101836 size-medium\" title=\"Anthem Bluse Cross logo\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/anthem_logo.jpg?resize=150%2C44&#038;ssl=1\" alt=\"Anthem Bluse Cross logo\" width=\"150\" height=\"44\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/anthem_logo.jpg?resize=150%2C44&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/anthem_logo.jpg?resize=75%2C22&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/anthem_logo.jpg?w=444&amp;ssl=1 444w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/><\/a><a title=\"Knowbe4\" href=\"http;\/\/www.knowbe4.com\/about-us\/\" target=\"_blank\" rel=\"noopener noreferrer\">Knowbe4&#8217;s<\/a> Sjouwerman speculates that the Chinese now own the identities of all the people fighting them. The stolen data can now be used in a multitude of <strong>social engineering scenarios.<\/strong> <a title=\"Dmitri Alperovitch\" href=\"https:\/\/web.archive.org\/web\/20211125182054\/https:\/\/www.crunchbase.com\/person\/dmitri-alperovitch\" target=\"_blank\" rel=\"noopener noreferrer\">Dmitri Alperovitch<\/a>, co-founder of security firm <a title=\"CrowdStrike\" href=\"http:\/\/www.crowdstrike.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">CrowdStrike<\/a> told <em>CNN<\/em> that the attack fit the profile of a hacking group believed to be <a title=\"Government of the People's Republic of China\" href=\"http:\/\/en.wikipedia.org\/wiki\/Government_of_the_People%27s_Republic_of_China\" target=\"_blank\" rel=\"nofollow noopener wikipedia noreferrer\">Chinese government<\/a> spies called &#8220;<strong>Deep Panda<\/strong>.&#8221;<\/p>\n<p>The objective of the &#8220;Deep Panda&#8221; data breach according to the CrowdStrike CTO is to amass a <strong>large collection of Americans&#8217; personal information<\/strong> to find citizens willing to spy for the Chinese and find potential U.S. spies operating in China. Mr. Alperovitch told <em>CNN<\/em> that&#8217;s why<span class=\"Apple-converted-space\">\u00a0<\/span><a title=\"Chinese hackers broke into U.S. federal employee network\" href=\"http:\/\/money.cnn.com\/2014\/07\/10\/technology\/security\/china-hacks-us\/\" target=\"_blank\" rel=\"noopener noreferrer\">Chinese hackers broke into U.S. federal employee network<\/a><span class=\"Apple-converted-space\">\u00a0<\/span>last year. They also broke at least three hospital chains and two insurance providers the public hasn&#8217;t yet heard about.<\/p>\n<p><a href=\"http:\/\/www.truste.com\/blog\/2011\/04\/05\/6-tips-to-spot-stop-a-phish\/\" target=\"_blank\" rel=\"noopener noreferrer\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-101839\" title=\"Phishing\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/phishing4-2.png?resize=116%2C100&#038;ssl=1\" alt=\"Phishing\" width=\"116\" height=\"100\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/phishing4-2.png?resize=150%2C129&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/phishing4-2.png?resize=75%2C65&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/phishing4-2.png?w=300&amp;ssl=1 300w\" sizes=\"auto, (max-width: 116px) 100vw, 116px\" \/><\/a><a title=\"knowbe4\" href=\"www.knowbe4.com\/about-us\/\" target=\"_blank\" rel=\"noopener noreferrer\">Knowbe4<\/a> speculates that many people in the Government have steam coming out of their ears about the Anthem hack. <a title=\"Cyberwarfare\" href=\"http:\/\/en.wikipedia.org\/wiki\/Cyberwarfare\" target=\"_blank\" rel=\"nofollow noopener wikipedia noreferrer\">Cyberwar<\/a> has suddenly become very personal to them. This may be why <a title=\"Barack Obama\" href=\"http:\/\/www.barackobama.com\" target=\"_blank\" rel=\"homepage nofollow noopener noreferrer\">President Obama<\/a> recently signed an executive order that will nudge private companies to share data about cybersecurity threats between each other and with the federal government.<\/p>\n<p>Apart from the cost of the Anthem data breach are likely to smash $100 million barrier, it&#8217;s surprising that <strong>Anthem did not encrypt SSN&#8217;s<\/strong> which allowed wholesale <a title=\"Identity theft\" href=\"https:\/\/web.archive.org\/web\/20160411050412\/https:\/\/www.lexingtonlaw.com\/credit-education\/identity-theft\" target=\"_blank\" rel=\"lexington nofollow noopener noreferrer\">identity theft<\/a> of thousands of American cyber-warriors.<\/p>\n<p><a href=\"http:\/\/www.theguardian.com\/world\/2010\/dec\/04\/wikileaks-cables-china-cyber-warfare\" target=\"_blank\" rel=\"noopener noreferrer\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-101841 size-medium\" title=\"Deep Panda is amassimg a large collection of Americans' personal information\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/china-is-building-up-a-cy-006.jpg?resize=150%2C90&#038;ssl=1\" alt=\"Deep Panda is amassimg a large collection of Americans' personal information\" width=\"150\" height=\"90\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/china-is-building-up-a-cy-006.jpg?resize=150%2C90&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/china-is-building-up-a-cy-006.jpg?resize=75%2C45&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/china-is-building-up-a-cy-006.jpg?w=460&amp;ssl=1 460w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/><\/a>CEO Sjouwerman explains that hackers are going after<strong> healthcare records<\/strong> because they are <strong>much more valuable.<\/strong> He points out that healthcare records stay <strong>active for several months<\/strong> after a hack, as opposed to credit card numbers which quickly get nixed after a few days. Since Anthem is a healthcare company, you would expect them to take <strong>HIPAA compliance<\/strong> to the max and even top the required controls with higher standards. As we all know, compliance does not equal security, but it establishes a baseline at the very least.<\/p>\n<p><strong><em>rb-<\/em><\/strong><\/p>\n<p><em>There is enough blame to go around.<\/em><\/p>\n<p><em> Time to go back to a cash society and barter.<\/em><\/p>\n<p><em>Say, Doc Johnson, I&#8217;ll trade you two chickens for measles vaccination.<\/em><\/p>\n<h6>Related articles<\/h6>\n<ul>\n<li><a href=\"http:\/\/freebeacon.com\/national-security\/chinas-secret-strategy-exposed\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">China&#8217;s Secret Strategy Exposed<\/a> (freebeacon.com)<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><em><a title=\"Ralph Bach\" href=\"https:\/\/rbach.net\/index.php\/new-resume\/\" target=\"_blank\" rel=\"noopener noreferrer\">Ralph Bach<\/a>\u00a0has been in IT long enough to know better and has blogged from his\u00a0<a title=\"Bach Seat\" href=\"https:\/\/rbach.net\/\" target=\"_blank\" rel=\"noopener noreferrer\">Bach Seat<\/a> about IT, careers, and anything else that catches his attention since 2005. You can follow him on <a class=\"broken_link\" href=\"http:\/\/www.linkedin.com\/in\/rb48334\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">LinkedIn<\/a>,\u00a0<a href=\"https:\/\/www.facebook.com\/ralph.bach.14\" target=\"_blank\" rel=\"noopener noreferrer\">Facebook<\/a>,\u00a0and\u00a0<a href=\"https:\/\/twitter.com\/rbach48334\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a>. Email the Bach Seat\u00a0<a href=\"mailto:\/\/bach.seat@gmail.com\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>some think that the Anthem Blue Cross data breach designed to build dossiers to attack US cyber spooks and defense contractors,<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[3277,2363,2362,2375,35,605,2376,824,2162,1282,1966,951,4],"class_list":["post-75581","post","type-post","status-publish","format-standard","hentry","category-security","tag-3277","tag-anthem","tag-blue-cross-and-blue-shield","tag-boeing","tag-china","tag-cyberwarfare","tag-deep-panda","tag-encryption","tag-hacking","tag-hipaa","tag-northrop-grumman","tag-pii","tag-security"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/75581","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/comments?post=75581"}],"version-history":[{"count":11,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/75581\/revisions"}],"predecessor-version":[{"id":125408,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/75581\/revisions\/125408"}],"wp:attachment":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/media?parent=75581"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/categories?post=75581"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/tags?post=75581"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}