US Health Dept warns hospitals of hackers targeting IT help desks
ID: 37b708a7-c448-52ba-97b4-4c3fe2272e54
STIX ID: report--37b708a7-c448-52ba-97b4-4c3fe2272e54
Feed Name: Bleeping Computer
The HHS/HC3 alert warns that attackers are calling healthcare IT help desks using local area codes and stolen identity details to enroll attacker-controlled MFA devices, enabling account takeover, email access, and diversion of ACH payments; the campaign uses AI voice cloning, domain impersonation, and traditional BEC tactics, shows similarities to Scattered Spider operations, and HC3 recommends callbacks, ACH monitoring, revalidation of payer access, in-person or supervisor verification for sensitive requests, and helpdesk social-engineering training.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
