Lessons (not) Learned from the Change Healthcare Incident
Change Healthcare exposed data on over two thirds of Americans due to a cyberattack. Among others, they are fully compliant with SOC2, HITRUST r2, and PCI DSS.
So what happened?
There was a publicly accessible Citrix portal. The threat actors used compromised credentials to log in. MFA was not enabled.