US Health Departmen...
US Health Department warns IT help desks of social engineering

Brandon Lee
Anyone working in the healthcare sector, specifically helpdesk?


  • The U.S. Department of Health and Human Services (HHS) warns of hackers targeting IT help desks in the Healthcare and Public Health (HPH) sector using social engineering tactics.
  • Attackers gain access by enrolling their own multi-factor authentication (MFA) devices after impersonating financial department employees.
  • They manipulate IT helpdesks into enrolling new devices under their control, leading to access to corporate resources and facilitating business email compromise attacks.
  • The attackers exploit vulnerabilities in the payer websites, diverting payments to their controlled bank accounts, which are later transferred overseas.
  • The tactics resemble those of the Scattered Spider threat group, known for their ransomware attacks on high-profile organizations.
  • The FBI and CISA previously issued advisories on Scattered Spider's tactics.
  • While health sector incidents have similarities, they have yet to be directly attributed to a specific threat group.


Posted : 06/04/2024 7:20 pm