Insurance company UnitedHealth Group is confirming a ransomware attack earlier this year affected the private data of over 100 million people. The number was published in the US Department of Health and Human Services Office of Civil Rights (OCR) Breach Report on Thursday, making it the largest healthcare data breach on the list.
- Home
- Technology
- News
UnitedHealth data breach leaked info on over 100 million people
UnitedHealth’s Change Healthcare told the US Health Department it has sent over 100 million notices to people regarding the February ransomware breach.


Hacker group Blackcat, also known as ALPHV, claimed responsibility for the February attack on Change Healthcare that caused widespread disruptions for healthcare providers processing bills, claims, payroll, and prescriptions for weeks.
According to the HHS FAQs page, Change Healthcare told OCR on October 22nd that it’s sent people about 100 million individual notices regarding this breach.
Stolen information may include:
As reported by Bleeping Computer, UnitedHealth CEO Andrew Witty’s written testimony (PDF) to a House committee said the threat actors got in by using stolen credentials for a Citrix remote access service that lacked multifactor authentication.
On February 12, criminals used compromised credentials to remotely access a Change Healthcare Citrix portal, an application used to enable remote access to desktops. The portal did not have multi-factor authentication. Once the threat actor gained access, they moved laterally within the systems in more sophisticated ways and exfiltrated data. Ransomware was deployed nine days later.
UnitedHealth paid the group a $22 million ransom. However, another operation threatened to continue leaking the data and may have secured a second ransom payment.

Patriots releasing veteran S Peppers, source says
- 4 hours ago
Trump hints at further delay in TikTok’s sale deadline
- 13 hours ago

Karachi imposes complete ban on heavy traffic for 11th, 12th Rabi-ul-Awwal
- 13 hours ago
KP to install panic buttons to combat harassment of women
- 16 hours ago

FBR issues new rules for online businesses
- 12 hours ago

US President Trump cancels visit to India
- 12 hours ago

FIA arrests human smuggler with 6 Afghan nationals in Quetta
- 16 hours ago

NCAA, Venmo partner on college athlete abuse
- 4 hours ago

Anthropic will start training its AI models on chat transcripts
- 5 hours ago
PM Shehbaz arrives in Tianjin, China, for official visit
- 15 hours ago

Kobo replaces Pocket with Instapaper on its e-readers in a free update
- 5 hours ago
Three dead as protesters set fire to council building in Indonesia
- 14 hours ago