Separate recent ransomware attacks affect Spectrum Health, MI doctor’s office

locked entrance

A cyber attack that hit a contracted vendor of Spectrum Health, Wolverine Services Group, has impacted approximately 60,000 patients of Spectrum Health Lakeland. Wolverine’s systems were attacked by a ransomware attack. A ransomware attack occurs when hackers gain access to a system and encrypt a portion or all of the files and demand ransom payment in order to release instructions on how to decrypt the files.

The breach in this incident affected only the Lakeland portion of Spectrum Health, not their entire system. As is usual with breaches such as this, it occurred well before it was discovered: the breach occurred in September but wasn’t discovered until December. More can be read about this incident here.

In a more recent ransomware hack in Michigan, which occurred on April 1st at a doctor’s office in Battle Creek, the doctors of this office decided to retire early, after they refused to pay the ransom payment and the hackers erased all their files. The files were already encrypted by the office’s software system, so no personal information was gained. However, with patient files gone forever, much data that was already gained through tests and other means will never be recovered, as the article from WWMT states.

While these two cases show issues at businesses, and we as citizens only have so much control over business records, it is important for every person to keep secure their private information. We will continue to work to update this blog on ways users can prevent becoming the victim of cyber incidents (malware, phishing, etc.). If you have any questions or would like to discuss, we’re here to help.

Reminder to keep passwords secure…

It is a vitally important practice to keep your passwords safe. As a general rule, never give out passwords to anyone. The article here notes that Facebook asked a user for their email login and password to verify who they were. This can open up a user to phishing attacks.

If you need to use Facebook, it is advised to create a new Gmail account and use that specifically for Facebook, rather than risking the potential of a frequently-used email account being compromised.

In addition to this, it is wise to use different and hard-to-guess passwords for different websites. Using the same password for different sites opens one up again to issues if one site’s password file gets hacked.

Feel free to discuss with us your options with keeping your passwords safe. We’re here to help!

Mail users reporting issues with Gmail after macOS update

caution sign

As noted on a number of complaints across Apple related sites, the newest update of macOS (10.14.4), which was released a few days ago, causes issues with authentication when attempting to sign into a user’s Gmail account. Users are reporting receiving an endless loop, bouncing between macOS and Google’s sign-in page in Safari.

Because of this, it is recommended not to upgrade to OS 10.14.4 if you use Gmail within your Mail application until Apple releases an update and it’s verified as a fix for the issue.

It appears this is a verified issue per discussions on the Apple Support site. Attempting to use a different browser such as Chrome does not succeed as a work-around, as the Mail application interacts directly with Safari in this process.

Apple Mail can also exhibit other intermittent issues for some users, such as not showing a message as replied-to where a user had just replied. If you are noticing any odd issues such as this, restart your Mail application.

You can read more about the Mail/Gmail 10.14.4 issue here. As always, if you need assistance, we’re here to help!

Facebook stored users’ passwords in unsecure manner

Facebook app

Facebook stored passwords for hundreds of millions of users, exposing them for years to any person who had internal access to these password files. Passwords are usually encrypted, but errors led to some 200 million to 600 millions passwords being exposed. Passwords that were affected were for Facebook, Facebook Lite and Instagram. More information can be found here.

This is a good reminder of the importance of:

  • Changing passwords often, while making them not easily guessable
  • Using 2fa (Two Factor Authorization) applications on your mobile phone, such as Authy
  • Configuring Facebook to send you alerts in the event an unauthorized computer or mobile device logs into your account
  • Using Facebook to audit your account to see what devices are currently logged into your account, to determine if there are any that may look suspicious

If you’d like assistance with setting up any of these items, or have questions, let us know!

Web browser Firefox can now block auto-play videos

The latest version of the Mozilla browser Firefox can now block auto-play videos with sound. Chrome has previously introduced this ability, but Firefox’s has the ability to block more videos in a more user-friendly manner of setup. It can also be configured to exclude only certain sites, and include others. More can be read here.

Features such as this are good for those on limited download plans. If you’d like assistance with configuring this feature, just let us know!

Google urges Chrome users to upgrade to latest version

Due to a security vulnerability, Google is urging users of their Chrome web browser to update to the latest version. As the article mentions in the first link below, Chrome updates are usually automatically performed.

To see the current version of Chrome on a Mac, you can access the Chrome menu in the top left while in the browser and choose “About Google Chrome”. The second of two links below explains how to check if on a Windows-based PC.

This is another example of ensuring that your software is kept up to date.

https://www.pcmag.com/news/367015/stop-what-youre-doing-and-update-google-chrome

https://www.pcmag.com/feature/364079/how-to-update-google-chrome/2

Adobe fixes Premiere issue that blew MacBook speakers

MacBook with Adobe products

Earlier in February, it was reported by multiple sites that some MacBook Pro owners had an issue with Adobe Premiere Pro CC “blowing” the speakers due to a software bug. Adobe has confirmed this issue and introduced an update to address it. The below link explains the problem and resolution.

Issues like this show the positive results of making sure software is kept up to date. For users with slower connections that prohibit quickly downloading updates and other files, ask us how we can assist with getting the most out of what you already have.

https://www.theverge.com/2019/2/23/18237501/adobe-premiere-pro-cc-macbook-pro-speakers-blown-patched

Apple Watch provides potentially life-saving benefits

The Apple Watch can provide monitoring of various health markers, during rest, exercise and even sleep. This can provide various clues to potential health issues.

As the below linked article indicates, this is exactly what the Watch provided. An “Apple Watch user in Washington has credited his Apple Watch with alerting him that his atrial fibrillation had returned.” Because of this history of health markers that the Watch provided, his doctor was then able to put him on blood thinners to prevent a possible stroke.

Wrongful death lawsuit brought after fire allegedly caused by iPad

Firefighters putting water on fire.

“A wrongful death lawsuit has been filed against Apple in New Jersey after a man died in an apartment fire which allegedly began when his iPad burst into flames.” As has been seen in the past, especially in the recall of Samsung phones due to higher propensity for them to catch fire, it is important to understand the risks (while fairly rare) that a Lithium Ion battery could catch fire.

Here are a few user tips to practice when charging your mobile device:

  • When charging your device, do so in an area away from flammable materials. Best to charge on a fireproof tray or other fireproof item.
  • Don’t charge your device in bed while sleeping, and don’t put it under the bed covers or pillows.
  • It is wise to not leave a device charging when you’re not near it. In the event of any issues, you want to be able to address what’s occurring as soon as possible.
  • Be aware of how hot your phone gets while in use or especially when charging. Refrain from charging for long periods of time in areas of direct sunlight or other hot places, such as on the dashboard of a car on a hot day.

Doing the above things will assist in keeping you safe. Below is the link to the article on the lawsuit for further review.

Multi-level hack on email provider destroys almost two decades of data

People holding message bubbles

“Email provider VFEmail said it has suffered a catastrophic destruction of all of its servers by an unknown assailant who wiped out almost two decades’ worth of data and backups in a matter of hours.” The hacker (or hackers) acquired multiple passwords related to the service, and formatted all hard drives related to the serving of email. They were discovered in the middle of formatting the backup server. The email is “effectively gone” as stated in the article.

This is a good reminder that it’s important to have a backup of your IMAP mail or other online email (such as Yahoo Mail or Gmail) to your local computer, which also has a backup. Backups are a good idea always, in all circumstances.

https://arstechnica.com/information-technology/2019/02/catastrophic-hack-on-email-provider-destroys-almost-two-decades-of-data/