1 min read

Nearly 30K exposed in Colonial Behavioral Health ransomware attack

Laptop displaying a padlock icon with RANSOMWARE text below

Colonial Behavioral Health (CBH), a Virginia-based healthcare services provider, announced a data breach on November 27, 2024, following a ransomware attack. The breach exposed the protected health information (PHI) of 29,930 individuals.

 

What happened

On October 24, 2024, CBH identified unusual activity in its IT network, which was later confirmed to be a ransomware attack. Investigations revealed that an unauthorized party had accessed the network as early as May 17, 2024. Compromised data included names, addresses, Social Security numbers, driver’s license numbers, dates of birth, medical information, and insurance details.  

CBH immediately enlisted cybersecurity experts to secure its systems and investigate the breach. On November 27, 2024, notification letters were sent to affected individuals detailing the specific information involved.

 

What was said  

The CBH public notice states that the organization “notified state and federal law enforcement, including the FBI’s Cyber Crimes Division, the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA), and the Cyber Fusion Center of the Virginia State Police. CBH is supporting all law enforcement investigations into this matter.”

Furthermore, the organization urges former or current CBH patients who want to receive credit monitoring and did their notice to please email privacy@colonialbh.org.

 

Why it matters

Healthcare organizations, like CBH, are more susceptible to ransomware attacks as medical and personal information fetches high prices on the black market. Cybercriminals exploit system vulnerabilities to access sensitive data, often resulting in significant financial gains for the attackers and devastating consequences for organizations and individuals.

Go deeper: Why healthcare is a major target for cyberattacks

 

The bottom line

Healthcare organizations must use advanced threat detection, employee training, and regular system audits to improve their cybersecurity measures.

Those affected should monitor their financial and medical accounts closely and consider legal advice to understand their rights and potential recourse.

 

FAQs

What is a data breach?

A breach occurs when an unauthorized party gains access, uses or discloses protected health information (PHI) without permission. Breaches include hacking, losing a device containing PHI, or sharing information with unauthorized individuals.

See also: How to respond to a data breach

 

What should individuals do if their data has been compromised?

If individuals suspect their data has been compromised, they must monitor their accounts for suspicious activity and report any unauthorized transactions immediately.

 

Are there any costs associated with placing a fraud alert or credit freeze?

No, under U.S. law, consumers are entitled to a free credit report annually from each of the three major credit reporting bureaus, Equifax, Experian, and TransUnion. So, placing a fraud alert or credit freeze does not incur any costs.

digital face surrounded by code

Lexington Diagnostic Center data breach exposes nearly 30K

On December 24, 2024, Lexington Diagnostic Center (LDC) filed a data breach notice with the U.S. Department of Health and Human Services Office for...

Read More
23andMe logo

23andMe reaches $30m settlement after data breach impacts millions

The genetic testing and ancestry company 23andMe has agreed to a $30 million settlement after a class-action lawsuit was filed against it for a...

Read More
computer code with red screen

Nearly 300,000 impacted by data breach at Texas Retina Associates

On June 26, 2024, Texas Retina Associates (TRA), a healthcare provider specializing in ophthalmology, announced a data breach affecting nearly...

Read More