/

Arietis Health Data Breach: What & How It Happened?

Arietis Health Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

Arietis Health, a revenue cycle management company, experienced a data breach in May 2023 due to a vulnerability in a file-transfer application. The breach impacted numerous patients from various healthcare organizations. Upon discovery, Arietis Health promptly secured and patched the affected system. This breach is part of a broader cyber incident affecting multiple organizations.

How many accounts were compromised?

The breach impacted data related to approximately 1.9 million individuals.

What data was leaked?

The data exposed in the breach included names, dates of birth, driver's license or state identification card numbers, addresses, Social Security numbers, medical record numbers, patient account numbers, health insurance information, diagnosis and treatment information, clinical and prescription information, and provider information.

How was Arietis Health hacked?

Hackers exploited a vulnerability in the MOVEit file-transfer application used by Arietis Health, gaining access to sensitive patient data across multiple healthcare organizations. The specifics of the infiltration method and any potential backdoor entry points remain unclear.

Arietis Health's solution

In response to the hack, Arietis Health took several measures to secure its platform and prevent future incidents. This included patching its MOVEit server, engaging independent cybersecurity experts for investigation, and notifying affected patients. Arietis Health also offered complimentary credit and identity monitoring services, established a toll-free call center for inquiries, and sent letters to patients with information about the breach.

How do I know if I was affected?

Arietis Health notified affected patients about the breach. If you are a patient and haven't received a notification, you can visit Have I Been Pwned to check if your credentials were affected.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

For more specific help and instructions related to Arietis Health's data breach, please contact Arietis Health's support directly.

Where can I go to learn more?

If you want to find more information on the Arietis Health data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

/

Arietis Health Data Breach: What & How It Happened?

Arietis Health Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

Arietis Health, a revenue cycle management company, experienced a data breach in May 2023 due to a vulnerability in a file-transfer application. The breach impacted numerous patients from various healthcare organizations. Upon discovery, Arietis Health promptly secured and patched the affected system. This breach is part of a broader cyber incident affecting multiple organizations.

How many accounts were compromised?

The breach impacted data related to approximately 1.9 million individuals.

What data was leaked?

The data exposed in the breach included names, dates of birth, driver's license or state identification card numbers, addresses, Social Security numbers, medical record numbers, patient account numbers, health insurance information, diagnosis and treatment information, clinical and prescription information, and provider information.

How was Arietis Health hacked?

Hackers exploited a vulnerability in the MOVEit file-transfer application used by Arietis Health, gaining access to sensitive patient data across multiple healthcare organizations. The specifics of the infiltration method and any potential backdoor entry points remain unclear.

Arietis Health's solution

In response to the hack, Arietis Health took several measures to secure its platform and prevent future incidents. This included patching its MOVEit server, engaging independent cybersecurity experts for investigation, and notifying affected patients. Arietis Health also offered complimentary credit and identity monitoring services, established a toll-free call center for inquiries, and sent letters to patients with information about the breach.

How do I know if I was affected?

Arietis Health notified affected patients about the breach. If you are a patient and haven't received a notification, you can visit Have I Been Pwned to check if your credentials were affected.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

For more specific help and instructions related to Arietis Health's data breach, please contact Arietis Health's support directly.

Where can I go to learn more?

If you want to find more information on the Arietis Health data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

Arietis Health Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

Arietis Health, a revenue cycle management company, experienced a data breach in May 2023 due to a vulnerability in a file-transfer application. The breach impacted numerous patients from various healthcare organizations. Upon discovery, Arietis Health promptly secured and patched the affected system. This breach is part of a broader cyber incident affecting multiple organizations.

How many accounts were compromised?

The breach impacted data related to approximately 1.9 million individuals.

What data was leaked?

The data exposed in the breach included names, dates of birth, driver's license or state identification card numbers, addresses, Social Security numbers, medical record numbers, patient account numbers, health insurance information, diagnosis and treatment information, clinical and prescription information, and provider information.

How was Arietis Health hacked?

Hackers exploited a vulnerability in the MOVEit file-transfer application used by Arietis Health, gaining access to sensitive patient data across multiple healthcare organizations. The specifics of the infiltration method and any potential backdoor entry points remain unclear.

Arietis Health's solution

In response to the hack, Arietis Health took several measures to secure its platform and prevent future incidents. This included patching its MOVEit server, engaging independent cybersecurity experts for investigation, and notifying affected patients. Arietis Health also offered complimentary credit and identity monitoring services, established a toll-free call center for inquiries, and sent letters to patients with information about the breach.

How do I know if I was affected?

Arietis Health notified affected patients about the breach. If you are a patient and haven't received a notification, you can visit Have I Been Pwned to check if your credentials were affected.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

For more specific help and instructions related to Arietis Health's data breach, please contact Arietis Health's support directly.

Where can I go to learn more?

If you want to find more information on the Arietis Health data breach, check out the following news articles: