Hack on Premera Blue Cross exposes 11M customer records

Borg 386

ADHD Senior Member
Guru
Gold Member
VIP
Local time
2:43 PM
Messages
5,489
Location
In a house with a cat trying to kill me
A recently discovered cyberattack on health insurance provider Premera Blue Cross last year may have exposed the medical data and financial information of 11 million customers, the company revealed Tuesday, the latest security breach at a health industry organization.

Hackers gained unauthorized access to customers' personal information, including names, birthdates, Social Security numbers, and claims information during the May 2014 intrusion, said Premera, a health benefits provider in the Pacific Northwest. Other information exposed included bank account information, email addresses and telephone numbers, Premera said.

The breach was discovered January 29, just days before Anthem, the No. 2 health insurer in the US, revealed that it was the victim of what may be the largest ever data breach involving a US health insurer. Anthem said the attack on its servers compromised the unencrypted personal information such as names, dates of birth, member IDs, and Social Security numbers for as many as 80 million current and former members and employees.
Hack on Premera Blue Cross exposes 11M customer records - CNET

Premera Blue Cross hit by "sophisticated" hack, 11M affected | ZDNet
 
Last edited:

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Pamera is used by Amazon, Microsoft, and Starbucks among other companies in the area...

I am not surprised that another Blue Cross company had a data breach, nor would I be surprised, if all of them will have one. The "Blues" are interconnected that complements the propagation of the hack. The question is, will all of them be able to detect the data breach?
 

My Computer My Computer

At a glance

Windows 7 64-bit, Windows 8.1 64-bit, OSX El ...Intel i5-3350P 3.1 GHz16 GBs GSkill SniperRadeon HD 7850
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built at Home
OS
Windows 7 64-bit, Windows 8.1 64-bit, OSX El Capitan, Windows 10 (VMware)
CPU
Intel i5-3350P 3.1 GHz
Motherboard
Gigabyte GA-Z77X-UP5 TH
Memory
16 GBs GSkill Sniper
Graphics Card(s)
Radeon HD 7850
Sound Card
VIA HD Audio
Monitor(s) Displays
Dell U2410 24"
Screen Resolution
1920x1200
Hard Drives
1 x Intel 520 240 GBs
1 x Seagate 1TBs SATA 2.0,
1 x Seagate 1TBs eSATA 2.0
PSU
Thermaltake 850W
Case
Antec P183
Cooling
Noctua NH-D14 Heatsink 2 x 120mm fans, 4 x 120mm case fans
Keyboard
Dell Multimedia keyboard
Mouse
Logitech Trackball
Internet Speed
28.5 Mb/s
Once a cloud data has been hacked people personal information will be forever known to the bad guys and could be use later, much later when people are not watching. They can also sell this information to other crooks to be use even later.

To put it simple.
Cloud security has not kept up with Cloud usage.
 

My Computer My Computer

At a glance

Windows 10 Pro. 64/ version 1709 Windows 7 Pr...Intel i7-6800K @ 4.3Corsair Platinum 16 gig @2400EVGA GTX 1070 OC
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
This one was Blue Crosses fault. Documents reveal they didn't encrypt the SS data all for the sake of convenience.

In this instance, Anthem didn't even have your records encrypted (and lord knows they can afford to do so). Apparently, encrypting your data would have been inconvenient.
You can have the best security, but if you're too damn lazy to use it, it does no good. Yes, I am mad at them because had they gotten the ID numbers of the medical cards, those could have been changed. Your SS stays with you for life. meaning I don't know if my identity will be compromised 2 years from now, or 20 years from now. It's out there now for good. Thanks Blue Cross. Hope you get sued into oblivion. Maybe other companies will take that as an example & do the right thing, even if it is "inconvenient."
 

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
This one was Blue Crosses fault. Documents reveal they didn't encrypt the SS data all for the sake of convenience.
I don't disagree that this one was Blue Cross' fault, but not for the reason stated...

There's no regulations for health insurance companies to encrypt the data at rest. It is currently recommended, but not required and as such, the "Blues" were in compliance as far as the encryption is concerned...

Encryption would not help in the case of stolen system level accounts. Administrators, be that for system or database, will need access to the encrypted data. Regardless of the type of encryption, these accounts have no problems connecting to the data.

On the other hand access control and monitoring privileged level access to PHI data is a regulatory requirement and this where the "Blues" were not in compliance. If the previous "Blues" data breach is any indication, where they did not monitor admins access and waited until a DBA discovered it, the current data breach has been caused by the lack of tighter access controls and monitoring the access. Simply requiring admins to use two-factor authentication would have prevent these data breaches.
 

My Computer My Computer

At a glance

Windows 7 64-bit, Windows 8.1 64-bit, OSX El ...Intel i5-3350P 3.1 GHz16 GBs GSkill SniperRadeon HD 7850
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built at Home
OS
Windows 7 64-bit, Windows 8.1 64-bit, OSX El Capitan, Windows 10 (VMware)
CPU
Intel i5-3350P 3.1 GHz
Motherboard
Gigabyte GA-Z77X-UP5 TH
Memory
16 GBs GSkill Sniper
Graphics Card(s)
Radeon HD 7850
Sound Card
VIA HD Audio
Monitor(s) Displays
Dell U2410 24"
Screen Resolution
1920x1200
Hard Drives
1 x Intel 520 240 GBs
1 x Seagate 1TBs SATA 2.0,
1 x Seagate 1TBs eSATA 2.0
PSU
Thermaltake 850W
Case
Antec P183
Cooling
Noctua NH-D14 Heatsink 2 x 120mm fans, 4 x 120mm case fans
Keyboard
Dell Multimedia keyboard
Mouse
Logitech Trackball
Internet Speed
28.5 Mb/s
To me the point is, once your information is in the hands of others you have no control of that information.
I really don't know what we as individuals can do about the security of our information is such cases.

Once the bad guys get your Social Security Number (SSN) they have it forever and can sell it to whomever. How would one watch if this information to see if it is abuse over a long period of time.

We are just Fxxxxx because of poor cloud management in the control of others.
 

My Computer My Computer

At a glance

Windows 10 Pro. 64/ version 1709 Windows 7 Pr...Intel i7-6800K @ 4.3Corsair Platinum 16 gig @2400EVGA GTX 1070 OC
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
Once the bad guys get your Social Security Number (SSN) they have it forever and can sell it to whomever. How would one watch if this information to see if it is abuse over a long period of time.

Yepperz, meaning me & other people that were effected by this little snafu are going to have to be on guard for the rest of our lives.

Since Anthem is offering 2 years of credit monitoring, I imagine a whole slew of problems will start popping up 2+ years from now as more savvy hackers will wait until then & probably start slowly using the compromised SS numbers around that time.
 

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Because our SSN are ours forever; they are now the hackers SSN for ever.
 

My Computer My Computer

At a glance

Windows 10 Pro. 64/ version 1709 Windows 7 Pr...Intel i7-6800K @ 4.3Corsair Platinum 16 gig @2400EVGA GTX 1070 OC
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various

My Computer My Computer

At a glance

Windows 7 64-bit, Windows 8.1 64-bit, OSX El ...Intel i5-3350P 3.1 GHz16 GBs GSkill SniperRadeon HD 7850
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built at Home
OS
Windows 7 64-bit, Windows 8.1 64-bit, OSX El Capitan, Windows 10 (VMware)
CPU
Intel i5-3350P 3.1 GHz
Motherboard
Gigabyte GA-Z77X-UP5 TH
Memory
16 GBs GSkill Sniper
Graphics Card(s)
Radeon HD 7850
Sound Card
VIA HD Audio
Monitor(s) Displays
Dell U2410 24"
Screen Resolution
1920x1200
Hard Drives
1 x Intel 520 240 GBs
1 x Seagate 1TBs SATA 2.0,
1 x Seagate 1TBs eSATA 2.0
PSU
Thermaltake 850W
Case
Antec P183
Cooling
Noctua NH-D14 Heatsink 2 x 120mm fans, 4 x 120mm case fans
Keyboard
Dell Multimedia keyboard
Mouse
Logitech Trackball
Internet Speed
28.5 Mb/s
Well, Target is paying up for the breach, & that was only for credit card numbers.

Anthem BC/BS is insured for up to 100 Million in the event of a lawsuit, but some analysts have pointed out even that may not be enough to cover the damages when all is said & done.

Target to pay $10 million to victims of data breach - CNET
 

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Target got off cheap, even if you add the $6.7M that they paid to the layers. Target has $2.2B cash, the total of ~$17M for the data breach is chump change for them...
 

My Computer My Computer

At a glance

Windows 7 64-bit, Windows 8.1 64-bit, OSX El ...Intel i5-3350P 3.1 GHz16 GBs GSkill SniperRadeon HD 7850
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built at Home
OS
Windows 7 64-bit, Windows 8.1 64-bit, OSX El Capitan, Windows 10 (VMware)
CPU
Intel i5-3350P 3.1 GHz
Motherboard
Gigabyte GA-Z77X-UP5 TH
Memory
16 GBs GSkill Sniper
Graphics Card(s)
Radeon HD 7850
Sound Card
VIA HD Audio
Monitor(s) Displays
Dell U2410 24"
Screen Resolution
1920x1200
Hard Drives
1 x Intel 520 240 GBs
1 x Seagate 1TBs SATA 2.0,
1 x Seagate 1TBs eSATA 2.0
PSU
Thermaltake 850W
Case
Antec P183
Cooling
Noctua NH-D14 Heatsink 2 x 120mm fans, 4 x 120mm case fans
Keyboard
Dell Multimedia keyboard
Mouse
Logitech Trackball
Internet Speed
28.5 Mb/s
Yeah, and they'll probably write it off as a loss when it comes to tax time.

I see the real winners of this were the lawyers...once again.
 

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
In the U.S.A. I would recommend watching your income tax returns. Someone else just might file before you with your information and get your tax return and be gone.
 

My Computer My Computer

At a glance

Windows 10 Pro. 64/ version 1709 Windows 7 Pr...Intel i7-6800K @ 4.3Corsair Platinum 16 gig @2400EVGA GTX 1070 OC
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
My SS has Child support on it lol go ahead make my day and get me out of paying hahahaha

They wouldn't even look at mine they would get nowhere with it
 

My Computer My Computer

At a glance

Windows 10 Home Premium 64bit sp1Intel I7-6700K @ 4.6 Ghz 1.344 volts everyday OC32GB G-Skill TridentZ 3200mhz 16-18-18-38 DDR4Sli Gigabyte Windforce GTX 980 G1
Computer type
PC/Desktop
Computer Manufacturer/Model Number
CoreI7-6700K MrFingerIII Special Builds
OS
Windows 10 Home Premium 64bit sp1
CPU
Intel I7-6700K @ 4.6 Ghz 1.344 volts everyday OC
Motherboard
Asrock Fatality K6 Z170 Socket 1151
Memory
32GB G-Skill TridentZ 3200mhz 16-18-18-38 DDR4
Graphics Card(s)
Sli Gigabyte Windforce GTX 980 G1
Sound Card
AC97 Creative Rage Tactic 3D Headphones Bluetooth
Monitor(s) Displays
27" Asus ROG Swift PG278Q G-Sync 48" Vizio Smart HD TV
Screen Resolution
2560x1440p 27"- 48" Currently Gaming at 2560x1440p Res 2K
Hard Drives
250GB Samsung Evo840SSD Seagate baracuda 500 GB WD Mybook 500Gb 1TB Seagate Barracuda
PSU
HX1050w Corsair Silver 80plus certified crosfire/sli
Case
Enthod Pro Full Tower
Cooling
Corsair H110i GT 280 mm High Performance WaterBlock
Keyboard
Logitech wireless keyboard
Mouse
Logitech wireless mouse
Internet Speed
Cox Cable 100+ mb
Antivirus
WebRoot Spysweeper with Antivirus
Browser
IE-10, Chrome, Opera
Other Info
My Other Rig is a AMD FX8320E @4.6Ghz 16GB Ballistic Sport Ram
Mobo Asrock Fatality 990FX 120GB OCZ SSD 1TB Seagate Barracuda Corsair H75 Cooling PSU Corsair CX750
GPU GTX Gigabyte 970G1
In the U.S.A. I would recommend watching your income tax returns. Someone else just might file before you with your information and get your tax return and be gone.

Hate to say this, but it's already happening. Some people are finding that their taxes have already been filed & the IRS sent out a check to a fraudulent address.
 

My Computer My Computer

At a glance

Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1,...Intel Core 2 Duo 2.93GHzNot much with my ADHDATI Radeon HD 4350
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Back
Top