• Lexington
  • Rockbridge
  • Buena Vista
  • Sports
  • Business
  • Regional
  • In-Depth Reporting
  • About Us
Facebook Twitter Instagram
Rockbridge Report
Rockbridge Report
Facebook Twitter Instagram YouTube LinkedIn
  • Lexington
  • Rockbridge
  • Buena Vista
  • Sports
  • Business
  • Regional
  • In-Depth Reporting
  • About Us
Saturday, September 30
Rockbridge Report
Home»Health»Health data breach hitting Congress ‘could be extraordinary’

Health data breach hitting Congress ‘could be extraordinary’

March 9, 20234 Mins Read
FILE – Members of the House and Senate were informed Wednesday, March 8, 2023, that hackers may have gained access to their sensitive personal data in a breach of a Washington, D.C., health insurance marketplace. (AP Photo/Patrick Semansky, File)

By LISA MASCARO and FRANK BAJAK Associated Press

WASHINGTON (AP) — House leaders say the impact of a hack of health insurance marketplace used by members of Congress “could be extraordinary,” exposing sensitive personal data of lawmakers, their employees and families.

FILE- House Speaker Kevin McCarthy of Calif. released a joint statement with House Minority Leader Hakeem Jeffries on the breach’s risk. (AP Photo/Susan Walsh)

DC Health Link, which runs the exchange, said an unspecified number of customers were affected and it was notifying them and working with law enforcement to quantify the damage. It said it was offering identity theft service to those affected and extending credit monitoring to all customers.

Some 11,000 of the exchange’s more than 100,000 participants work in the House and Senate or are relatives.

In a letter to the exchange’s director posted on Twitter, House Speaker Kevin McCarthy and Minority Leader Hakeem Jeffries said the breach “significantly increases the risk that Members, staff and their families will experience identity theft, financial crimes, and physical threats.”

They said the FBI had informed them that it was able to purchase the stolen data on the dark web, where it was offered for sale for an unspecified amount Monday on a hacker forum popular with cybercriminals.

The FBI said in a brief statement Wednesday evening it said it was aware of the incident and was assisting.

In the letter, McCarthy and Jeffries said “the individuals selling the information appear unaware of the high-level sensitivity of the confidential information in their possession, and its relation to Members of Congress” but that would change as media reports publicized the breach.

Scope of the breach still unknown

They said the FBI had not yet determined the extent of the breach but that thousands of House members, employees and their families have enrolled in health insurance through DC Health Link since 2014. “The size and scope of impacted House customers could be extraordinary.”

It was not clear whether and how the FBI could guarantee that copies of the stolen data are not circulating in the cybercrime underworld.

In the sale offer, a broker on the online crime forum claimed to have records on 170,000 DC Health Link customers and said they were stolen Monday. Reached on Wednesday via encrypted chat, the broker said they were acting on behalf of a seller known as “thekilob.”

By Thursday, the offer and sample stolen data posted to the forum had been removed. The data listed Social Security numbers, addresses, names of employers, phone numbers, emails and addresses for a dozen DC Link participants. The AP reached one by phone on Wednesday evening.

“Oh my God,” the man said when informed the information was public. All 12 people listed work for the same company or are family members.

In an email to all Senate email account holders on Wednesday, the sergeant at arms recommended that anyone registered on the health insurance exchange freeze their credit to prevent identity theft.

An email sent out by the office of the Chief Administrative Office of the House on behalf of McCarthy and Jeffries called the breach “egregious” and urged members to use credit and identity theft monitoring resources.

In an emailed statement on Wednesday, Rep. Joe Morelle of New York said House leadership was informed by Capitol Police that DC Health Link “suffered an extraordinarily large data breach of enrollee information” that posed a “great risk” to members, employees and their family members. He said the FBI was still determining the “cause, size, and scope of the data breach.”

Not the first agency targeted

The hack follows several recent breaches affecting U.S. agencies. Hackers broke into a U.S. Marshals Service computer system and activated ransomware on Feb. 17 after stealing personally identifiable data about agency employees and targets of investigations.

An FBI computer system was recently breached at the bureau’s New York field office, CNN reported in mid-February. Asked about that intrusion, the FBI issued a statement calling it “an isolated incident that has been contained.” It declined further comment, including when it occurred and whether ransomware was involved.
There was no indication the DC Health breach was ransomware-related.
___
Bajak reported from Boston.

Related

Sept. 8, 2023 Newscast

rockbridgereport

The commonwealth’s attorney for Rockbridge Count The commonwealth’s attorney for Rockbridge County and Lexington said he wants victims of sexual assault at Washington and Lee University to seek help from police and prosecutors who can investigate and file criminal charges. 

In the past month, two former W&L students have faced sexual assault charges.

Read Ned Newton’s full story on our website, rockbridgereport.wlu.edu.
Lexington’s City Council has given the go-ahead Lexington’s City Council has given the go-ahead for a developer to begin drafting plans to build apartments off Spotswood Drive. 

The new permit approval comes after months of controversy about the design. 

Read Andrew Arnold’s full story on our website, rockbridgereport.wlu.edu.
A new, 24-hour EMS crew will help in providing bac A new, 24-hour EMS crew will help in providing backup services to Glasgow and other nearby cities and towns.

For more details on the new EMS crew, visit: https://youtu.be/k03HNBKB978.
Buddy, the horse, and Police Chief Angela Greene l Buddy, the horse, and Police Chief Angela Greene led the Lexington Christmas Parade. Buddy is one of the future Mounted Police Unit horses working with the Lexington police. 

Watch Buddy and the latest broadcast of the Rockbridge Report: https://www.youtube.com/watch?v=SDZ4A6xuk-4
A developer sought final city approval this week t A developer sought final city approval this week to build 62 apartment units on Lexington’s Spotswood Drive.

Echelon Resources went before the city’s planning commission Thursday to request a permit allowing the developer company to construct multi-family housing at the Spotswood site. The planning commission will offer a recommendation for approval or denial to the Lexington City Council. The city council will likely have a final vote on the permit in early January.

The proposal received some pushback from Lexington residents who fear the development will significantly increase traffic, impede the local hospital, or strain the city’s water and sewer systems. 

For more details on the Spotswood proposal visit: https://rockbridgereport.academic.wlu.edu/2022/12/08/spotswood-drive-apartment-complex-moves-forward/
Lexington’s city manager is searching for a full Lexington’s city manager is searching for a full-time city attorney. The previous city attorney, Jared Jenkins, no longer serves in the position following his split from Mann Legal Group.

Learn more by visiting the Rockbridge Report website: https://rockbridgereport.academic.wlu.edu/2022/12/08/lexington-replaces-city-attorney/
Two students at Virginia Military Institute and Wa Two students at Virginia Military Institute and Washington and Lee University posted bomb threats on anonymous social media platforms last week.

After investigations, both posts proved to be false alarms. Disciplinary measures for the students are unclear. 

Read the full story here: https://rockbridgereport.academic.wlu.edu/2022/12/08/two-university-bomb-threats-posted-on-anonymous-social-media-proved-false/
Local nonprofits, like the Rockbridge Area Relief Local nonprofits, like the Rockbridge Area Relief Association (RARA) and Washington and Lee’s Campus Kitchen, will provide extra support for families facing food insecurity during the holidays.

Read more about this on the Rockbridge Report website: https://rockbridgereport.academic.wlu.edu/2022/12/08/community-groups-to-offer-food-to-students-and-their-families-during-holiday-break/
“Normal people can’t afford that." Lexington “Normal people can’t afford that."

Lexington is Stacey Dickerson-Suggs’ hometown, but the single mother can’t afford to live here. Virginia house prices are going up about 10% each year. In Lexington, the median price of a home has increased 27% in the past year.

Read more about this on the Rockbridge Report website: https://rockbridgereport.academic.wlu.edu/2022/12/08/lexington-renters-buyers-cant-find-affordable-housing/
Load More... Follow on Instagram
Twitter
My Tweets
Reporters

Luke Fountain

Jenny Hellwig

Jak Krouse

Emma Malinak

Fraley Williams

Producers

Christian Basnight

Jack Hunter

Teddy Jacobsen

Ned Newton

Billy Queally

 

Supervisors

Kevin Finch

Alecia Swasy

Michael Todd

Rockbridge Report
© 2023 ThemeSphere. Designed by ThemeSphere.

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version
 

Loading Comments...