financetom
Technology
financetom
/
Technology
/
UnitedHealth hackers took advantage of Citrix vulnerabilty to break in, CEO says
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
UnitedHealth hackers took advantage of Citrix vulnerabilty to break in, CEO says
Apr 29, 2024 2:18 PM

SAN FRANCISCO, April 29 (Reuters) -

Hackers broke into UnitedHealth's ( UNH ) tech unit on Feb.

12 by exploiting a security vulnerability in software from

private IT company Citrix that allows employees remote access to

their desktop computers, the largest U.S. health insurer will

testify before a House panel this week.

UnitedHealth ( UNH ) CEO Andrew Witty's testimony before the House

Energy and Commerce Committee, slated for Wednesday, will follow

weeks of disruption to American healthcare since the insurer's

Change Healthcare unit was hacked.

On the morning of Feb. 21, the cybercriminal gang AlphV, aka

BlackCat, locked up Change Healthcare's systems and demanded a

ransom to unlock them, Witty will tell the House panel,

according to a copy of his written testimony posted to the

panel's website on Monday.

"Not knowing the entry point of the attack at the time, we

immediately severed connectivity with Change's data centers to

eliminate the potential for further infection," the testimony

says.

The criminals used compromised login credentials to remotely

access a Change Healthcare Citrix portal that did not have

multi-factor authentication, according to the testimony.

A Citrix spokesman didn't immediately respond to a request

for comment. It's unclear which specific security flaw at Citrix

was exploited by AlphV, but U.S. officials issued multiple

warnings about security loopholes in Citrix tools late last

year, some of which were being used to breach healthcare groups.

The hearing before the panel's subcommittee on oversight and

investigations will focus on the cyberattack's impact on

patients and providers.

UnitedHealth ( UNH ) has been working with the FBI and prominent

cybersecurity firms to investigate the hack. Security experts

from Google, Microsoft ( MSFT ), Cisco ( CSCO ) and

Amazon ( AMZN ) worked with teams from Mandiant and Palo Alto

Networks ( PANW ) to secure Change Healthcare's systems after

the breach, according to the testimony.

Last week, Witty said the company had paid the hackers a

ransom to ensure the decryption of Change Healthcare's systems,

although the size of the payment is not known.

The company has been scrambling to contain the hit to

healthcare payment processing across the country. Change

processes 50% of all medical claims in the United States.

As of April 26, UnitedHealth Group ( UNH ) had provided more than

$6.5 billion in accelerated payments and no-interest, no-fee

loans to thousands of health-care providers, according to

Witty's testimony.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
FranklinWH aPower S Wins
FranklinWH aPower S Wins "Best-in-Show" in Solar Power World's 2025 Top Products Awards
Nov 25, 2025
SAN JOSE, Calif., Nov. 25, 2025 /PRNewswire/ -- FranklinWH Energy Storage Inc., a leader in residential energy storage solutions, is proud to announce that its newly launched home battery, the aPower S, has been selected as a Best-in-Show winner in the Residential category of Solar Power World's 2025 Top Products contest. The annual Top Products awards program from Solar Power World...
o9 Solutions Files Trade Secret Misappropriation Complaint Against SAP and Former o9 Executives in U.S. District Court
o9 Solutions Files Trade Secret Misappropriation Complaint Against SAP and Former o9 Executives in U.S. District Court
Nov 25, 2025
o9 Solutions Is Committed to Protecting its Valuable Intellectual Property Against Illegal Theft and Copying DALLAS, Nov. 25, 2025 /PRNewswire/ -- o9 Solutions, Inc. (o9 or the Company) announced today that it has filed a complaint in the U.S. District Court for the Northern District of Texas against SAP SE ( SAP ) of Baden-Württemberg, Germany and SAP America, Inc....
Artificial Intelligence (AI) Tools Market Driven by Rapid Enterprise Automation, Advanced Analytics Adoption, and Expanding Digital Transformation Initiatives: - Market Research Intellect
Artificial Intelligence (AI) Tools Market Driven by Rapid Enterprise Automation, Advanced Analytics Adoption, and Expanding Digital Transformation Initiatives: - Market Research Intellect
Nov 25, 2025
The Artificial Intelligence (AI) Tools Market is primarily driven by rapid digital transformation across industries, increasing adoption of generative AI, and the growing need for intelligent automation to enhance operational efficiency. Advancements in machine learning models, cloud-based AI platforms, and data-driven decision-making tools are accelerating enterprise investments. Additionally, rising demand for personalized customer experiences, predictive analytics, and real-time insights is...
Tachyum Open Sources 281GB/s TDIMM™ for the Future of AI and Computing
Tachyum Open Sources 281GB/s TDIMM™ for the Future of AI and Computing
Nov 25, 2025
LAS VEGAS--(BUSINESS WIRE)-- Tachyum® today announced details about how its TDIMM™ technology is bringing the future of AI and computing, enabling AI models with parameters many orders of magnitude greater than those of any existing solution at a fraction of the cost. TDIMM is key to reducing the estimated cost of OpenAI data center $3 trillion and 250,000 megawatts of...
Copyright 2023-2026 - www.financetom.com All Rights Reserved