Does anyone want to guess how Change Health got owned?

I’ll give you guys some time to answer one question for me. Can you guess how Change Health Care got owned?

The article was posted today, and I first spotted it on Mastodon by a boost by Brian from Zack, the author.

So, has anyone thought of how they got owned yet?

OK, times up. If you guessed stolen credentials, you would be correct. If you might have guessed credential stuffing, it could’ve been a possibility, but according to the article, we know that credentials were stolen at least if not stuffed.

Do you also know what else the article stipulates that we’ve talked about?

It said that the place where the information was pilfered did not have two factor authentication.

The article goes in to detail on what happened once the creds were used

The article is titled Change Healthcare hackers broke in using stolen credentials — and no MFA, says UHG CEO if people want to read it.

Most of us are probably affected in one way or another. It doesn’t matter the company you actually get your insurance from at this point.


Discover more from The Technology blog and podcast

Subscribe to get the latest posts sent to your email.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.