• About
  • Subscribe
  • Contact
Thursday, May 8, 2025
    Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
FutureCISO
No Result
View All Result
Home Process Compliance and Governance

Philhealth bounces back after Medusa ransomware attack

Melinda Baylon by Melinda Baylon
October 2, 2023
Photo by Olena Lev on Unsplash

Photo by Olena Lev on Unsplash

Share on FacebookShare on Twitter

The website and members portal of the Philippine Health Insurance Corporation (PhilHealth) were restored following the hacking of its database due to the Medusa ransomware attack on September 22. 

Medusa ransomware

The ransomware infected 72 workstations and affected the state insurer's e-claims system, member portal system, and collection system. PhilHealth assured that the personal and medical data of its members were not compromised.

It maintained that the government will not pay Medusa’s USD300,000 or PHP17 million alleged ransom demand in exchange for stolen data from its website. PhilHealth senior vice president for Health Finance Policy Dr. Israel Francis Pargas reiterated the "government’s policy of not paying the alleged ransom to criminals.” 

Dr. Israel Francis Pargas

The state insurer has since shifted to manual operations since September 22 until all their systems are restored. It assured members that their benefits will not be hampered due to the incident and interim arrangements will be set for members to avail of them anytime and anywhere. PhilHealth immediately released public advisories and instructions for hospital benefit claims and premium payments over the counter.  

Restoration

The Department of Information and Communications Technology (DICT) has restored Philhealth systems affected by ransomware attacks. It is continually investigating and monitoring acquired logs from Philhealth’s affected systems to ensure cybersecurity. 

The state insurer welcomes calls for inquiry and shall impose disciplinary actions on those who will be found liable to have remised in the performance of their duties. 

PhilHealth added that it “ sincerely asks for the public’s understanding and support during this time and implores certain groups and sectors to refrain from concocting false and misleading information to avoid creating panic and distrust among our members and stakeholders.”

Related:  A CISO’s guide to the role of AI in cybersecurity

Recommended measures

In a memorandum following the attack, DICT advised all government agencies to employ recommended protection and security actions when compromised by ransomware.

The list includes backing up files, systems, and processes; prohibiting the use of pirated software; updating installed programs, and educating IT personnel on cybersecurity procedures. 

Tags: cybersecurityPhilHealthransomware
Melinda Baylon

Melinda Baylon

Melinda Baylon joins Cxociety as editor for FutureCIO and FutureIoT. As editor, she will be the main editorial contact for communications professionals looking to engage with aforementioned media titles. 

Melinda has adecade-long career in the media industry and served as TV reporter for ABS-CBN and IBC 13. She also worked as a researcher for GMA-7 and a news reader for Far East Broadcasting Company Philippines. 

Prior to working for Cxociety, she worked for a local government unit as a public information officer. She now ventures into the world of finance and technology writing while pursuing her passions in poetry, public speaking and content creation. 

Based in the Philippines, she can be reached at [email protected]

No Result
View All Result

Recent Posts

  • Reimagining security for the AI Era
  • PodChats for FutureCISO: Articulating the business value of security in 2025
  • New standard for cybersecurity at the storage layer
  • Cybersecurity challenges persist despite improved defenses
  • Weak password reuse crisis remains

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl