Not open for further replies.


Level 47
Content Creator
Summary: Community Health Systems, a US chain of more than 200 hospitals, said patient information such as names, addresses and social security numbers were stolen in the attack.

The US hospital network Community Health Systems confirmed in an SEC regulatory filing Monday that its computer network was the target of an external, criminal cyberattack.

The breach, which is believed to have originated from a Chinese hacker ring, resulted in stolen personal data from nearly 4.5 million patients who were treated within the hospital chain over the last five years.

In the filing, the hospital company said the attacker was an Advanced Persistant Threat group using highly sophisticated malware to gain entry into its computer network.

The attacker copied and transferred non-medical patient identification data that is protected under the Health Insurance Portability and Accountability Act, such as patient names, addresses, birthdates, telephone numbers and social security numbers.

Community Health Systems stressed that no patient credit card data was stolen, nor were any clinical or medical records. The attackers also failed to retrieve any sensitive intellectual property data, which is what the hospital company said this particular hacker ring typically goes after.

Since learning of the attack, the hospital chain said it's been working both with federal law enforcement authorities and the forensic security company Mandiant, with the latter helping the company work through remediation efforts and eradicate the malware from its system.

The healthcare industry has frequently been criticized for poor security practices in recent months. In April, the FBI issued a warning to healthcare providers regarding potential security weaknesses, and several security reports have highlighted the same threats.

According to a recent report from BitSight Technologies, healthcare and pharmaceutical companies have the lowest security performances when compared to the finance, utility and retail sectors. Given the lasting repercussions from Target's security debacle, that's saying something.


Deleted member 21043

Did anyone notice the list of threads from the past years related to chinese hackers stealing info etc on the "Similar Threads:" below the Post Reply form except me?

Anyway, looking at the Similar Threads below and this post, looks like someone needs to hack the Chinese and show them how they like it. The funniest part of it all is all these hackers hiding behind their computer screens are all like, "Oh were so cool because we managed to hack this" thinking they are above everyone else. In reality: Your not above everyone else. Your the same as everyone else. What makes you think you are more important or special compared to others because you can hide behind a computer and type some commands? It's like people saying to them (the hackers), "I'm special and your not because I am more inteligent and have a life outside than sitting inside behind a stolen computer in a dark room". I mean, when we hear about how people have hacked something and stolen data etc we are all thinking it and we all know it's true, and I'm sure they don't like that the same way we don't like them hacking.
Not open for further replies.