Puppies, kittens, data at risk after 'cyber incident' at veterinary giant
- Reference: 1712586613
- News link: https://www.theregister.co.uk/2024/04/08/cyber_incident_strikes_veterinary_services/
- Source link:
CVS Group, the company behind one of the UK's largest chains of vet practices, announced a "cyber incident" on Monday, hinting at the possibility of data theft and clinical care at some of its practices being affected.
The incident has forced CVS to engage its incident response plan, which involved pulling systems offline to isolate the incident. The consequences of the temporary IT shutdown "caused considerable operational disruption over the past week," the company stated, and disruption is expected to continue for further weeks still.
[1]
It also engaged outside security experts to help investigate the extent of the damage and support CVS's response. The [2]Information Commissioner's Office (ICO) – the UK's data protection regulator – was also notified "due to the risk of malicious access to personal information."
[3]
[4]
It's not clear what type of data is potentially affected by the incident, but attackers looking to monetize any thefts would likely target personal information of staff and customers, plus financial information and other confidential documents.
CVS operates around 500 practices around the world, most of which are located in the UK, and employs 9,000 people including 3,300 veterinary nurses and 2,400 surgeons.
[5]
UK operations have been disrupted, CVS said without offering much in the way of details, but clinical care has remained at its "usual high levels" at "the majority" of its practices. Outside of the UK, operations are unaffected.
"IT services to our practices and business functions have now been securely restored across the majority of the estate; however, due to the increased levels of security and monitoring, some systems are not working as efficiently as previously and this is likely to result in an ongoing operational impact," CVS's notice read.
"Operations outside the UK remain operationally unaffected as do non-CVS hosted systems and the Group's e-commerce systems."
[6]Change Healthcare faces second ransomware dilemma weeks after ALPHV attack
[7]World's second-largest eyeglass lens-maker blinded by infosec incident
[8]Feds probe alleged classified US govt data theft and leak
[9]Nearly 1M medical records feared stolen from City of Hope cancer centers
CVS said the incident has forced the company to accelerate its [10]cloud migration strategy, with its practice management system and related infrastructure being moved, owing to the security enhancements and operational efficiencies a cloud approach would offer.
Its share price took a steep but temporary fall when the London market opened on Monday, before regaining much of the loss to a more gradual decline over the previous few days.
[11]
The company's market cap stands at £673 million ($849 million), but its share price has fallen heavily since the UK's Competition and Markets Authority (CMA) announced it would launch an investigation into the largest vet chains over unfair prices in March.
Additional updates as regards the integrity of its data and overall IT recovery are expected to be released in due course. ®
Get our [12]Tech Resources
[1] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2ZhQUmvMR7sC2fuBLePHQ@gAAAA0&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0
[2] https://www.theregister.com/2024/03/11/ico_pay_or_ads/
[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44ZhQUmvMR7sC2fuBLePHQ@gAAAA0&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33ZhQUmvMR7sC2fuBLePHQ@gAAAA0&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44ZhQUmvMR7sC2fuBLePHQ@gAAAA0&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[6] https://www.theregister.com/2024/04/08/change_healthcare_ransomware/
[7] https://www.theregister.com/2024/04/05/hoya_infosec_incident/
[8] https://www.theregister.com/2024/04/04/feds_data_dump/
[9] https://www.theregister.com/2024/04/03/city_of_hope_data_theft/
[10] https://www.theregister.com/2024/04/08/cloud_mckinsey_survey/
[11] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33ZhQUmvMR7sC2fuBLePHQ@gAAAA0&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[12] https://whitepapers.theregister.com/
We moved to git years ago but I still think in cvs commands. Send help.
The incident has forced CVS to engage its incident response plan, which involved pulling systems offline to isolate the incident. The consequences of the temporary IT shutdown "caused considerable operational disruption over the past week," the company stated, and disruption is expected to continue for further weeks still.
It also engaged outside security experts to help investigate the extent of the damage and support CVS's response. The Information Commissioner's Office (ICO) – the UK's data protection regulator – was also notified "due to the risk of malicious access to personal information."
Obviously we can't see all the details, but this seems like a lot better response than the "Lessons will be learnt" PR bollocks and "Have some credit rating tracking" responses that we usually see.
A pint for the CVS techies who probably really need one -->
"UK operations have been disrupted, CVS said without offering much in the way of details,"
Our local practice's IT has been down since before the weekend. They're back "just" as of lunch time today but "running very slowly".
They're totally unable to dispense meds or check prescriptions, still, which is annoying as our dog started some last week and there is a query with the dosage.
Oddly, nothing listed on https://www.cvsukltd.co.uk/news/ and no link in ElReg article to an announcement ?
UPDATE: Found it buried here : https://www.cvsukltd.co.uk/investor-centre/regulatory-news/
> The incident has forced CVS to engage its incident response plan, which involved pulling systems offline to isolate the incident.
Did it involve cvs diff to see what they changed and cvs update to roll back?