Deliberate Parenthood has confirmed it suffered a cyberattack affecting its IT programs, forcing it to take components of its infrastructure offline to comprise the injury.
Deliberate Parenthood is a New York-based nonprofit group that gives a spread of reproductive well being care providers, training, and advocacy for contraception. It is likely one of the largest suppliers of reproductive and sexual well being providers in the US.
Martha Fuller, CEO and President of Deliberate Parenthood of Montana, instructed BleepingComputer that the cybersecurity incident occurred in late August and the group is at the moment investigating its precise scope and affect.
“On August 28, 2024, Deliberate Parenthood of Montana (PPMT) recognized a cybersecurity incident affecting our IT programs,” Fuller stated.
“We instantly carried out our incident response protocols, together with taking parts of our community offline as a proactive security measure.”
Fuller notes that the response of Deliberate Parenthood of Montana’s IT employees was speedy and praised their ongoing system restoration efforts.
RansomHub claims the assault
The RansomHub ransomware group claimed duty yesterday for the assault at Deliberate Parenthood, threatening to leak 93GB of information allegedly stolen from the group’s programs in six days.
The risk actors printed numerous confidential paperwork on their extortion portal on the darkish internet as proof of their claims.
Final week, the FBI, CISA, the Multi-State Info Sharing and Evaluation Middle (MS-ISAC), and the Division of Well being and Human Companies (HHS) issued a joint advisory about RansomHub’s development of focusing on healthcare organizations, of which that is one other instance.
Concerning RansomHub’s allegations, Fuller instructed BleepingComputer that they’re monitoring the scenario and have knowledgeable the FBI accordingly.
“We’re conscious of the RansomHub submit, and wish to guarantee our group that we’re taking this matter very significantly. We’ve reported this incident to federal regulation enforcement, and can assist their investigation.” – Fuller | PPMT
Contemplating the wide selection of reproductive and sexual healthcare providers supplied by Deliberate Parenthood, together with entry to contraception, abortion care, and hormone remedy, a data breach throughout the group might have vital privateness considerations for sufferers.
As of but, it has not been confirmed that any information has been stolen from Deliberate Parenthood’s programs, and the investigation to find out this chance remains to be underway.
Deliberate Parenthood beforehand handled a ransomware assault once more in late 2021, when ransomware actors breached the Los Angeles division (PPLA) and stole non-public data of 400,000 sufferers.