Tamaan ang dapat malintikan! Imbestigasyon sa PhilHealth ransomware attack, kasado na—Privacy Commission

Inaasahang matutukoy sa imbestigasyon ng National Privacy Commission (NPC) kung anong maaaring pananagutan ng pamunuan ng Philippine Health Insurance Corp. (PhilHealth) matapos itong tamaan ng Medusa ransomware attack kamakailan.

Nagsimula na ang imbestigasyon ng National Privacy Commission (NPC) sa nangyaring ransomware attack sa Philippine Health Insurance Corp. (PhilHealth) upang matukoy ang naging ugat ng data breach kung saang nakuha at kumalat sa Internet ang mga personal na datos ng mga miyembro.

Sa isang pahayag, sinabi ng NPC na nagsimula na ang imbestigasyon para malaman rin ang mga maaaring naging paglabag sa Data Privacy Act of 2012 ng PhilHealth at mga opisyal nito.

“This decisive action follows the unsettling revelation of a data breach where confidential information was illicitly obtained from PhilHealth’s systems,” ayon sa NPC.

Sinabi pa ng NPC na nakakuha na ito ng kopya ng data dump na ginawa ng mga hackers, at natapos na rin ang paunang analysis nito ng kanilang complaints and investigation division.

“Upon extraction, these files revealed a staggering 734 GB worth of data, including personal and sensitive personal information,” anang NPC.

“During a recent media interview, PhilHealth implicitly acknowledged a degree of negligence on their part, with one of their officials citing the expiration of antivirus software as a potential vulnerability that may have facilitated the breach,” dagdag pa nito.

Nangako ang NPC na magiging patas ito sa imbestigasyon at hindi mag-aatubiling tukuyin ang pagkakasala ng mga kinatawan ng PhilHealth.

“The NPC will leave no stone unturned in its investigation into the potential negligence of PhilHealth officials and explore whether any efforts have been made to conceal pertinent information,” ayon sa komisyon.

“Rest assured, the NPC stands firm in its resolve to combat any actions that contravene the Data Privacy Act of 2012, whether within government or private institutions. We pledge unwavering dedication to enforcing the necessary measures and will be relentless in holding those responsible fully accountable,” ayon pa sa komisyon.