The worst health care data breach in history just got worse

    By Judy Sanhz
Published January 27, 2025

Change Healthcare, a subsidiary of UnitedHealth, initially reported a data breach in October last year that was considered the worst in the industry. The breach, which affected up to 100 million users, has now grown to an alarming 190 million, according to Tech Crunch. Cybercriminals reportedly exploited an employee system that lacked multi-factor authentication.

UnitedHealth confirmed the new numbers for the ransomware attack on Friday. “Change Healthcare has determined the estimated total number of individuals impacted by the Change Healthcare cyberattack is approximately 190 million,” Tyler Mason, a spokesperson for UnitedHealth Group, wrote in an email to TechCrunch.

The vast majority of affected people have already received an individual or substitute notice, and UnitedHealth says the final number will be confirmed and filed with the Office for Civil Rights at a later date. The spokesperson said they were “not aware of any misuse of individuals’ information as a result of this incident and had not seen electronic medical record databases appear in the data during the analysis.”

In the meantime, users can only worry about who has access to data such as their Social Security number, driver’s license number, passport number, diagnoses, test results, medications, and health insurance information. Furthermore, when this breach started, those affected also had to deal with widespread disruption of the healthcare system, preventing pharmacies and doctors from accepting discount prescription cards, which resulted in patients paying full price. Pharmacies and doctors could not file claims.

If there is any consolation, those responsible for the breach were found. The BlackCat ransomware gang was responsible for the attack that took 6TB of data. This incident highlights the importance of taking cybersecurity seriously and the necessary precautions to keep your data safe — our roundup of the best antivirus software can help you on that front.

Related Posts

Qualcomm is set to ratchet up chip prices in September, and your next gadget upgrade could bear the brunt

The price hike will be in effect from September 1, 2026, a recent Bloomberg report claims. Essentially, all the companies placing their chip orders after that will pay a higher price. 

Stop fighting with your roomie over outlets and get one of these multi-port chargers before you head back to school

Back-to-school season is a smart time to buy one. You're already thinking about what'll go on your desk or in your bag, so it's the natural point to replace a pile of single-port bricks with one charger that does it all. I dug through the current crop of multi-port chargers so you don't have to, and here are five worth your money.

OpenAI’s rogue AI hack was just the beginning, Hugging Face warns

Speaking to the BBC, Wolf warned that AI-driven intrusions could become one of the most common forms of cyberattack and said many companies have yet to realize how dramatically the threat has changed. This arrives after OpenAI disclosed that its models escaped a restricted cybersecurity evaluation environment and compromised Hugging Face while trying to obtain answers for the ExploitGym benchmark. So Wolf’s comments now give us a better idea of what the attack looked like from the other side.