Albertans' personal data up for sale after hackers extort health company
Personal information belonging to Albertans has been leaked online and posted for sale after a health care company was hacked, CTV News has learned.
Ontario-based Homewood Health told CTV News it was hacked earlier this year and has recently begun contacting affected companies and agencies whose information may be compromised, including several in Alberta as well as in B.C. and Ontario.
It's not clear how many Albertans were affected by the breach.
CTV News has confirmed at least some of the information leaked online is authentic, though the bulk of the data is still on the auction block at Marketo, a site that describes itself as a "leaked data marketplace."
The data appeared to draw hundreds of bids from prospective buyers.
"An investigation is currently underway and actively involves external cybersecurity and privacy experts working in consultation with law enforcement and provincial privacy authorities," reads a statement from Homewood Health.
"These experts are working diligently to understand how the information was obtained and what information has been affected."
Alberta's Workers' Compensation Board and the City of Spruce Grove told CTV News they were among those affected by the leak.
"We are still confirming the extent of the breach, but understand it includes information supplied by WCB-Alberta employees who accessed support from their employee and family assistance program," reads a statement from WCB-Alberta, noting an investigation is ongoing.
"We have been assured that the provider is taking the appropriate steps to investigate and respond."
The City of Spruce Grove says it was informed Friday morning that it was affected by the breach.
"The information accessed was general in nature about the City and not related to personal information," reads a statement from the city.
Homewood Health says it will be notifying those affected by the breach but wouldn't specify how many people that would be.
It previously told CTV News Vancouver that state-sponsored Chinese hackers Hafnium, who victimized thousands of companies earlier this year, were likely behind the breach.
The Office of the Information and Privacy Commissioner of Alberta says it was initially unaware of the breach but has since been in contact with Homewood Health and is awaiting an official report.
'LEAKED DATA MARKETPLACE'
Marketo, which has the same name as an online marketing company by Adobe but bears no connection, calls itself a “leaked data marketplace” but it’s perhaps more accurate to describe it as an online clearinghouse for stolen information.
The first and most prominent listing currently on its website is for Homewood Health, and it showed nearly 300 bids have purportedly been made for the information so far.
When CTV News contacted the site, a representative countered Homewood’s description of events, insisting they researched the weaknesses of Homewood Health and other companies and attacked them directly, insisting they did not acquire the data as part of the Hafnium hack.
“I got to say it right away that we just sell company data. We do not have the intention to harm customers or clients of this company,” wrote a spokesperson identifying themselves as Mannus Gott. “If the company understands and is willing to accept responsibility for the leak, there will be no publication. Otherwise, we are not responsible for the safety of this data.”
They say on Thursday, some of the data will be sold and the rest will be published.
A Homewood Health representative told CTV News Vancouver the hackers had tried to extort the company over the information, characterizing it as a “dark web” scheme, but the Marketo website can be accessed by anyone with an internet connection.
“This isn't only on the dark web, Marketo group's site exists on the clear web too, so it's very easily accessed," explained online threat analyst Brett Callow, who works for Emsisoft on Vancouver Island.
“These types of incidents are extremely common and there are about 2,500 organizations that have had their data stolen and published on sites like this -- and that just within the last couple of years."
With files from Penny Daflos
CTVNews.ca Top Stories
They were from different countries and barely spoke each other's languages. More than 20 years later, they're still happily in love
He decided to spend Christmas somewhere that wouldn't involve snowstorm disasters. She was spending the holidays with family, travelling for the first time outside of her native country of Venezuela. 23 years later, they're still in love.
Man who set himself on fire outside Trump trial dies of injuries, police say
A man who doused himself in an accelerant and set himself on fire outside the courthouse where former U.S. President Donald Trump is on trial has died, police said.
Verdun Airbnb listing taken down amid complaints, fines and frustration from neighbours
An Airbnb in Montreal's Verdun borough was the source of much frustration from neighbours who say there were constant parties at the location. It has been taken down from the app, but housing advocates remain upset about short-term rentals.
Young people 'tortured' if stolen vehicle operations fail, Montreal police tell MPs
One day after a Montreal police officer fired gunshots at a suspect in a stolen vehicle, senior officers were telling parliamentarians that organized crime groups are recruiting people as young as 15 in the city to steal cars so that they can be shipped overseas.
12 students and teacher killed in Columbine school shooting remembered at 25th anniversary vigil
Thirteen victims of the Columbine High School shooting were remembered during a vigil Friday on the eve of the 25th anniversary of the shooting that was the worst the nation had seen at the time.
Israeli airstrike in southern Gaza city of Rafah kills at least 9 Palestinians, including 6 children
An Israeli airstrike on a house in Gaza's southernmost city killed at least nine people, six of them children, hospital authorities said Saturday, as Israel pursued its nearly seven-month offensive in the besieged Palestinian territory.
Mandisa, Grammy award-winning 'American Idol' alum, dead at 47
Soulful gospel artist Mandisa, a Grammy-winning singer who got her start as a contestant on 'American Idol' in 2006, has died, according to a statement on her verified social media. She was 47.
Iraq investigates a blast at a base of Iran-allied militias that killed 1. U.S. denies involvement
Iraqi authorities said Saturday that they were investigating an explosion that struck a base belonging to the Popular Mobilization Forces, a coalition of Iran-allied militias, killing one person and injuring eight.
The House is on the brink of approving aid for Ukraine and Israel after months of struggle
The House is preparing in a rare Saturday session to approve US$95 billion in foreign aid for Ukraine, Israel and other U.S. allies.