vicesociety attacks CHDE POLSKA

Incident Date:

July 21, 2022

World map

Overview

Title

vicesociety attacks CHDE POLSKA

Victim

CHDE POLSKA

Attacker

Vicesociety

Location

Rzeszów, Poland

Poland, Poland

First Reported

July 21, 2022

CHDE POLSKA Faces Ransomware Attack from Vicesociety

CHDE POLSKA, a healthcare services provider operating in Poland, has been targeted by the ransomware group Vicesociety. The attack was announced on the group's dark web leak site, with the victim's website listed as http://www.chde.pl. CHDE POLSKA is a significant player in the healthcare sector, responsible for the flow of payments between payers, providers, and patients.

The company's website provides limited information about its size and operations. However, it is known that the healthcare industry is a prime target for ransomware attacks, with health care organizations reporting the most ransomware attacks of the 16 critical U.S. infrastructure sectors in 2023. The FBI's Internet Crime Complaint Center received over 2,800 complaints identified as ransomware, causing adjusted losses of nearly $60 million.

The vulnerabilities that make CHDE POLSKA and other healthcare providers attractive targets for ransomware attacks include the need to keep critical services running and the trove of personal patient information they hold. In the case of CHDE POLSKA, the attack has caused significant disruptions, including delays in prescriptions, hospital discharges, and paychecks for medical workers.

The ransomware group Vicesociety has not disclosed the specific data it claims to have stolen from CHDE POLSKA. However, the group operates with a ransomware-as-a-service (RaaS) model, where developers create malicious code and affiliates gain access to victim networks to deploy the ransomware. The group's demands and the potential consequences of non-payment are not specified in the available information.

In response to the attack, CHDE POLSKA and other healthcare providers must prioritize cybersecurity measures to prevent further damage and protect patient information. This includes patching vulnerabilities, preventing intrusions, detecting intrusions, stopping malicious encryption, and creating offsite, offline backups.

The ransomware attack on CHDE POLSKA serves as a reminder of the ongoing threat posed by cybercriminals to the healthcare sector and the need for robust cybersecurity measures to protect sensitive patient information and critical services.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.