Deceptive Email Compromises More Than 1 Million Health Care Records
Carefirst, the health insurance company, reported on May 20 that approximately 1.1 million health care records were compromised in "a sophisticated cyberattack." What was the method used in the "sophisticated cyberattack"? Bryan Krebs has the details: Turns out, the same bulk registrant in China that registered the phony Premera and Anthem domains in April 2014 also registered two Carefirst look-alike domains — careflrst[dot]com (the “i” replaced with an “L”) and caref1rst[dot]com (the “i” replaced with the number “1”). Additionally, ThreatConnect has unearthed evidence showing the same tactics were used on EmpireB1ue.com (note the “L” replaced with a number “1”), a [...]