Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

What Small Businesses Can Learn from the UnitedHealth Hack

What Small Businesses Can Learn from the UnitedHealth Hack

Cyberattacks often attack healthcare organizations, including businesses and vendors they associate with, primarily due to how lucrative they can be. One particularly nasty hack is just one of the many organizations which have been featured in headlines due to their inability to protect against security threats. Let’s explore this new situation with UnitedHealth Group and see if there is anything you can learn from it.

Change Healthcare Suffered a Hacking Attack

One of the major functions of medical organizations is that they need to communicate with insurance providers to obtain authorization and payment for various medical services. They might use intermediary businesses to handle this task, and as is the case with most healthcare-related companies, there are regulations in place to keep patient data safe throughout this process. Historically, there have been many challenges associated with this process.

Software has allowed these intermediaries to more effectively do their jobs, but digitizing any process inevitably puts it at risk of cyberattacks. The increasingly digitized world exemplifies this, as the greater level of cyberattacks in general has shown that even small businesses are at risk of potential breaches, let alone larger targets like hospitals and insurance providers.

Let’s Look at the Change Healthcare Incident

As one of the aforementioned intermediaries, Change Healthcare processes 15 billion transactions per year between UnitedHealth Group and its affiliates. Naturally, this makes it a massive target. The ransomware group BlackCat/ALPHAV, known for targeting the healthcare industry, allegedly targeted Change Healthcare. The organization immediately took their systems down once the threat was detected, and as of this writing, their systems still in operation have passed cybersecurity firm evaluations.

Despite these efforts, however, six terabytes of Change Healthcare source codes and data about healthcare, insurance providers, and pharmacies were stolen.

The group has declined to comment further on the matter, as well as whether or not they paid the ransom, but the ransomware group insists that they were paid $22 million, citing an unknown blockchain transaction as evidence of their accusation. Whether or not it’s the truth, UHN stock fell by $30 billion in cap market value, making the consequences of this incident even more significant.

Throughout this, many doctors, hospitals, and pharmacies suffered billing challenges, and UnitedHealth Group has made many attempts to quickly address the problem with Change Healthcare. Even the United States Department of Health and Human Services has issued a recommendation that they adopt measures like waiving prior authorizations and accepting paper bills to help address these operational issues. It’s gotten so bad that many providers have been advised to go with a different clearinghouse if they are dealing with limited cash flow.

This is Admittedly a Severe Example, but You Can Learn From Their Mistakes

Prioritize Redundancy and Continuity

This service outage impacted a lot of healthcare organizations, but not in the same ways. Large organizations that had the ability to make difficult decisions on the fly had an easier time adjusting, whereas smaller companies that relied on the services had a more difficult experience. With fewer options and resources at their disposal, it’s no wonder small companies have a harder time keeping up.

At the heart of your organization’s efforts should be redundancy and continuity. If something doesn’t work the way it’s supposed to, then you’ll want to have a backup plan ready to go at a moment’s notice. This is not a problem exclusive to large businesses, and a limited budget is not an excuse to forego these critical components.

Continuity Involves More Than Just Your Business

Ultimately, one of the most important things that your organization must maintain is interconnectivity and collaboration. If at any point there is an issue with this, your operations could be impacted—particularly for smaller businesses that don’t have as many failsafes. If you rely on an external provider, you should thoroughly vet them and their security measures to ensure they are up to the task of helping your business.

Don’t Forget Cybersecurity

Similarly, businesses must take cybersecurity seriously, as failing to do so could lead to expensive issues that are not easily solved—even with deep pockets. Your cybersecurity department or outsourced IT team should be able to detect and prevent security breaches through preventative measures and proactive monitoring.

This philosophy is at the heart of the services we at Voyage Technology offer. To learn more about what we can do to protect your organization, be sure to call us today at 800.618.9844.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Saturday, 21 December 2024

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Business Computing Data Productivity Business Software Innovation Hackers Cloud Network Security Hardware Internet Efficiency IT Support User Tips Malware Email Privacy Phishing Workplace Tips Google Computer Users Collaboration IT Services Hosted Solutions Mobile Device Quick Tips Ransomware Cybersecurity Workplace Strategy Small Business Microsoft Data Backup Communication Smartphone Android Business Management Smartphones VoIP Saving Money communications Mobile Devices Passwords Data Recovery Backup Managed Service Managed IT Services Browser Social Media Microsoft Office Upgrade Disaster Recovery Tech Term Network Remote Internet of Things Facebook Automation Artificial Intelligence Cloud Computing Covid-19 Remote Work Miscellaneous Gadgets Windows Server Managed Service Provider Information Productivity Outsourced IT Current Events Employee/Employer Relationship Spam Encryption AI Holiday Windows 10 Government Data Management Office Business Continuity Compliance Wi-Fi Virtualization Training Business Technology Windows 10 Blockchain Two-factor Authentication Apps Bandwidth Mobile Office Data Security Gmail Vendor Employer-Employee Relationship Chrome Managed Services Voice over Internet Protocol Budget Apple Networking Mobile Device Management App BYOD Computing WiFi Applications Information Technology Access Control Office 365 Tip of the week Conferencing Hacker Avoiding Downtime How To BDR Operating System HIPAA Router Risk Management Virtual Private Network Big Data Health Help Desk Analytics Office Tips Augmented Reality Computers Retail Storage Healthcare Password Bring Your Own Device Website Managed IT Services Marketing Remote Monitoring End of Support Vulnerability Vendor Management Solutions Cybercrime The Internet of Things Display Printer Social Paperless Office Windows 11 Infrastructure 2FA Monitoring Excel IT Support Document Management Customer Service Remote Workers Telephone Scam Data loss Cooperation Free Resource Project Management Windows 7 Going Green Patch Management Firewall Save Money Microsoft 365 Settings Wireless Printing Safety Content Filtering IT Management YouTube Meetings VPN Employees Physical Security Integration Cryptocurrency Modem User Tip Processor Computer Repair Mobile Security Virtual Desktop Holidays Data storage LiFi Data Storage Smart Technology Supply Chain Customer Relationship Management Outlook Video Conferencing Machine Learning Managed Services Provider Virtual Machines Professional Services Money Saving Time Humor Hacking Presentation Managed IT Service Maintenance Downloads Antivirus Wireless Technology Sports iPhone Mouse Licensing Administration Vulnerabilities Entertainment Data Privacy Word Images 101 Robot Mobility Telephone System Multi-Factor Authentication Cost Management Alt Codes Content Remote Working Wearable Technology Memory Vendors Entrepreneur Downtime Unified Threat Management Motherboard Data Breach Comparison Google Play Be Proactive Health IT Unified Threat Management Directions Videos Hosted Solution Assessment Electronic Health Records Permissions Workforce Typing Undo Wasting Time Threats Trend Micro Network Congestion Specifications Security Cameras Workplace Strategies Google Drive User Error Microchip Internet Exlporer Software as a Service Knowledge Fraud Meta Username Managing Costs Amazon Point of Sale eCommerce 5G Black Friday SSID Google Docs Unified Communications Database Surveillance Application Experience Virtual Assistant Outsource IT Media Bitcoin Network Management Running Cable Tech Support IT Technicians Virtual Machine Environment Cookies Monitors Cyber Monday Medical IT Google Wallet Proxy Server Reviews IBM Tactics Development Hotspot Transportation Small Businesses Windows 8 Laptop Websites Mirgation Hypervisor Displays Nanotechnology Optimization PowerPoint Drones Shopping SharePoint Addiction Electronic Medical Records Language Employer/Employee Relationships Outsourcing Navigation Management PCI DSS Competition Halloween Chatbots Screen Reader Writing Distributed Denial of Service Workplace Lenovo Gig Economy Service Level Agreement Internet Service Provider Virtual Reality Computing Infrastructure Teamwork Hiring/Firing Evernote Paperless Hacks Server Management Regulations Compliance Scary Stories Private Cloud Identity Identity Theft Smart Tech Memes User Fun Co-managed IT Superfish Bookmark Deep Learning Download Net Neutrality Twitter Alerts SQL Server Technology Care Business Communications Financial Data Error History Education Connectivity IT Social Engineering Break Fix Scams Browsers Smartwatch IP Address Upload Procurement Remote Computing Azure Hybrid Work Multi-Factor Security Tech Human Resources Mobile Computing Social Network Telework Cyber security Tablet IoT Communitications Recovery Search Dark Web Cables CES Best Practice Trends Supply Chain Management Hard Drives Alert Dark Data Google Calendar Term Google Apps Managed IT Customer Resource management FinTech Domains Buisness File Sharing Regulations IT solutions Star Wars IT Assessment How To Microsoft Excel IT Maintenance Legal Data Analysis Business Growth Gamification Flexibility Refrigeration Notifications Staff Value Business Intelligence Legislation Shortcuts Organization Public Speaking Travel Social Networking Techology Fileless Malware Digital Security Cameras Lithium-ion battery Google Maps Smart Devices Cortana Ransmoware

Blog Archive