3AM ransomware stole data of 464,000 Kootenai Health patients

Share:

Kootenai Health has disclosed a data breach impacting over 464,000 patients after their personal information was stolen and leaked by the 3AM ransomware operation.

Kootenai Health is a not-for-profit healthcare provider in Idaho, operating the largest hospital in the region, offering a wide range of medical services, including emergency care, surgery, cancer treatment, cardiac care, and orthopedics.

The organization is notifying patients who received care at its facilities that it detected a cyberattack in early March 2024, which disrupted certain IT systems.

An ongoing investigation shows that the cybercriminals gained unauthorized access to Kootenai’s systems on February 22, 2024, allowing the threat actors ten days to roam the network and steal sensitive data.

“On March 2, 2024, Kootenai Health became aware of unusual activity that disrupted access to certain IT systems,” reads the notification submitted to Maine’s AG Office.

“The investigation revealed that an unknown actor may have gained unauthorized access to certain data from the Kootenai Health network on or about February 22, 2024.”

The examination of what data has been stolen as a result of this breach was concluded on August 1, confirming the following as exposed:

  • Full names
  • Dates of birth
  • Social Security numbers (SSNs)
  • Driver’s Licenses
  • Government ID numbers
  • Medical record numbers
  • Medical treatment and condition information
  • Medical diagnoses
  • Health insurance information

Kootenai Health states that it’s unaware of any misuse of the stolen information. It also enclosed instructions for impacted individuals to enroll in 12-24 months of identity protection services, depending on what data was exposed.

Patients may also visit the hospital’s announcement published on the Kootenai Health website for more information and support links.

3AM ransomware leaks the data

The 3AM ransomware gang has claimed responsibility for the attack and leaked stolen data on its darknet portal, indicating that a ransom was not paid.

The stolen data consists of a 22GB archive, available for free, allowing any other cybercriminal to download the data and utilize it in further attacks.

3AM is a Rust-based ransomware strain first reported in September 2023, seeing limited deployment as a fallback option for when more proven lockers failed.

In January, Intrisec analysts reported seeing notable links between 3AM, Conti, and the Royal ransomware gangs, suggesting some association between the three gangs.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
10:14 pm, Jan 22, 2025
weather icon 4°C
L: 2° | H: 5°
broken clouds
Humidity: 87 %
Pressure: 1003 mb
Wind: 7 mph W
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 75%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 7:52 am
Sunset: 4:31 pm
DailyHourly
Daily ForecastHourly Forecast
Tomorrow 9:00 pm
weather icon
2° | 5°°C 1 mm 100% 18 mph 89 % 1005 mb 0 mm/h
Fri Jan 24 9:00 pm
weather icon
5° | 11°°C 1 mm 100% 25 mph 89 % 1004 mb 0 mm/h
Sat Jan 25 9:00 pm
weather icon
2° | 5°°C 1 mm 100% 6 mph 96 % 1013 mb 0 mm/h
Sun Jan 26 9:00 pm
weather icon
1° | 7°°C 0 mm 0% 16 mph 95 % 1013 mb 0 mm/h
Mon Jan 27 9:00 pm
weather icon
4° | 9°°C 1 mm 100% 26 mph 92 % 996 mb 0 mm/h
Tomorrow 12:00 am
weather icon
4° | 4°°C 0 mm 0% 4 mph 84 % 1003 mb 0 mm/h
Tomorrow 3:00 am
weather icon
3° | 3°°C 0 mm 0% 5 mph 89 % 1004 mb 0 mm/h
Tomorrow 6:00 am
weather icon
3° | 3°°C 0 mm 0% 7 mph 87 % 1005 mb 0 mm/h
Tomorrow 9:00 am
weather icon
4° | 4°°C 0 mm 0% 9 mph 83 % 1004 mb 0 mm/h
Tomorrow 12:00 pm
weather icon
8° | 8°°C 0 mm 0% 16 mph 76 % 1000 mb 0 mm/h
Tomorrow 3:00 pm
weather icon
8° | 8°°C 1 mm 100% 18 mph 71 % 999 mb 0 mm/h
Tomorrow 6:00 pm
weather icon
6° | 6°°C 0.8 mm 80% 16 mph 72 % 1002 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
5° | 5°°C 0 mm 0% 11 mph 75 % 1004 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€99,969.99
-2.28%
Ethereum(ETH)
€3,132.50
-2.03%
XRP(XRP)
€3.05
-0.16%
Tether(USDT)
€0.96
-0.05%
Solana(SOL)
€252.98
4.07%
Dogecoin(DOGE)
€0.345479
-4.05%
USDC(USDC)
€0.96
0.01%
Shiba Inu(SHIB)
€0.000019
-2.75%
Pepe(PEPE)
€0.000014
-3.41%
Peanut the Squirrel(PNUT)
€0.348999
-2.58%
Scroll to Top