ADVERTISEMENT

DICT warns against opening files from PhilHealth ransomware attack

Published Nov 8, 2023 04:00 pm

The Department of Information and Communications Technology (DICT) on Monday, Oct. 9 issued a warning to the public advising them not to open or click on any files that contain data stolen from the ransomware attack on the Philippine Health Insurance Corporation (PhilHealth).

photo-1563206767-5b18f218e8de.webp
Photo from Unplash

READ:

https://mb.com.ph/2023/9/23/phil-health-under-siege-medusa-group-demands-us-300-000-threatens-to-leak-data

"A warning to our fellow citizens, please be cautious because the information itself is being used by these cybercriminals as bait when you click on it in order to enter your system," DICT Secretary Ivan John Uy said in a mix of Filipino and English on the sidelines of the Cybersecurity Month 2023 kick off celebration.

He said the leaked data may have malware-infected links.

The DICT chief expressed concern as the data is now published via Telegram and the Dark web.

"This is what the criminal organization used or made as bait supposedly for the curious ones," Uy said.

"Embedded there is the malicious software that can enter your computer once you download or click the link," he added.

However, he pointed out that hackers who attacked PhilHealth have nothing left to demand, as they had already published compromised data.

"Well, there's nothing for them to demand anymore because they have already released it," Uy said.

RELATED STORY:

https://mb.com.ph/2023/10/7/ransomware-group-releases-data-of-thousands-of-phil-health-members-including-senior-citizens-pw-ds-and-employees

Who are the hackers?

Uy believes the perpetrators of the ransomware attack are international hackers, saying, "I don't think the locals would have the audacity to do this because we can catch them; they are within our jurisdiction."

However, Uy conveyed his disappointment to other localities that "propagate" the situation.

"Ang nakakalungkot is, meron tayong mga kababayan dito, na imbis na tulungan ang Pilipinas, o tulungan ang gobyerno, upang matugis o at least ma minimize yung damage, yung nangyari dito, eh pinapalaki nila yung damage at sini-share pa at pino-propagate ito (what's saddening is that we have fellow countrymen here who, instead of helping the Philippines or the government to catch or at least minimize the damage, what happened here is that they're amplifying the damage and sharing it, propagating it)," he said.

PhilHealth system ‘outdated’

Uy also pointed out that the PhilHealth system is outdated and that "for some of them to transact data, the workstations must download information from the server."

He emphasized that the workstations may have been compromised, but that the system containing the members' data remained secure.

READ:

https://mb.com.ph/2023/10/5/dict-assures-phil-health-members-data-not-hit-by-ransomware-attack

"But the workstations that are connected there and need to download information before they can transact with the public, yes, some of those have been compromised and may contain member information," he said.

Related Tags

Department of Information and Communications Technology PhilHealth ransomware attacks
ADVERTISEMENT
.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1561_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1562_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1563_widget.title }}

{{ articles_filter_1564_widget.title }}

.mb-article-details { position: relative; } .mb-article-details .article-body-preview, .mb-article-details .article-body-summary{ font-size: 17px; line-height: 30px; font-family: "Libre Caslon Text", serif; color: #000; } .mb-article-details .article-body-preview iframe , .mb-article-details .article-body-summary iframe{ width: 100%; margin: auto; } .read-more-background { background: linear-gradient(180deg, color(display-p3 1.000 1.000 1.000 / 0) 13.75%, color(display-p3 1.000 1.000 1.000 / 0.8) 30.79%, color(display-p3 1.000 1.000 1.000) 72.5%); position: absolute; height: 200px; width: 100%; bottom: 0; display: flex; justify-content: center; align-items: center; padding: 0; } .read-more-background a{ color: #000; } .read-more-btn { padding: 17px 45px; font-family: Inter; font-weight: 700; font-size: 18px; line-height: 16px; text-align: center; vertical-align: middle; border: 1px solid black; background-color: white; } .hidden { display: none; }
function initializeAllSwipers() { // Get all hidden inputs with cms_article_id document.querySelectorAll('[id^="cms_article_id_"]').forEach(function (input) { const cmsArticleId = input.value; const articleSelector = '#article-' + cmsArticleId + ' .body_images'; const swiperElement = document.querySelector(articleSelector); if (swiperElement && !swiperElement.classList.contains('swiper-initialized')) { new Swiper(articleSelector, { loop: true, pagination: false, navigation: { nextEl: '#article-' + cmsArticleId + ' .swiper-button-next', prevEl: '#article-' + cmsArticleId + ' .swiper-button-prev', }, }); } }); } setTimeout(initializeAllSwipers, 3000); const intersectionObserver = new IntersectionObserver( (entries) => { entries.forEach((entry) => { if (entry.isIntersecting) { const newUrl = entry.target.getAttribute("data-url"); if (newUrl) { history.pushState(null, null, newUrl); let article = entry.target; // Extract metadata const author = article.querySelector('.author-section').textContent.replace('By', '').trim(); const section = article.querySelector('.section-info ').textContent.replace(' ', ' '); const title = article.querySelector('.article-title h1').textContent; // Parse URL for Chartbeat path format const parsedUrl = new URL(newUrl, window.location.origin); const cleanUrl = parsedUrl.host + parsedUrl.pathname; // Update Chartbeat configuration if (typeof window._sf_async_config !== 'undefined') { window._sf_async_config.path = cleanUrl; window._sf_async_config.sections = section; window._sf_async_config.authors = author; } // Track virtual page view with Chartbeat if (typeof pSUPERFLY !== 'undefined' && typeof pSUPERFLY.virtualPage === 'function') { try { pSUPERFLY.virtualPage({ path: cleanUrl, title: title, sections: section, authors: author }); } catch (error) { console.error('ping error', error); } } // Optional: Update document title if (title && title !== document.title) { document.title = title; } } } }); }, { threshold: 0.1 } ); function showArticleBody(button) { const article = button.closest("article"); const summary = article.querySelector(".article-body-summary"); const body = article.querySelector(".article-body-preview"); const readMoreSection = article.querySelector(".read-more-background"); // Hide summary and read-more section summary.style.display = "none"; readMoreSection.style.display = "none"; // Show the full article body body.classList.remove("hidden"); } document.addEventListener("DOMContentLoaded", () => { let loadCount = 0; // Track how many times articles are loaded const offset = [1, 2, 3, 4, 5, 6, 7, 8, 9, 10]; // Offset values const currentUrl = window.location.pathname.substring(1); let isLoading = false; // Prevent multiple calls if (!currentUrl) { console.log("Current URL is invalid."); return; } const sentinel = document.getElementById("load-more-sentinel"); if (!sentinel) { console.log("Sentinel element not found."); return; } function isSentinelVisible() { const rect = sentinel.getBoundingClientRect(); return ( rect.top < window.innerHeight && rect.bottom >= 0 ); } function onScroll() { if (isLoading) return; if (isSentinelVisible()) { if (loadCount >= offset.length) { console.log("Maximum load attempts reached."); window.removeEventListener("scroll", onScroll); return; } isLoading = true; const currentOffset = offset[loadCount]; window.loadMoreItems().then(() => { let article = document.querySelector('#widget_1690 > div:nth-last-of-type(2) article'); intersectionObserver.observe(article) loadCount++; }).catch(error => { console.error("Error loading more items:", error); }).finally(() => { isLoading = false; }); } } window.addEventListener("scroll", onScroll); });

Sign up by email to receive news.