Vastaamo

Vastaamo is a Finnish private psychotherapy clinic founded in 2008.[1] Finnish venture capital company Intera Partners bought a majority share of 71.25% of the company in 2018.[2]

On 21 October 2020, Vastaamo announced that its patient database had been stolen. The extorters demanded 40 bitcoins, roughly 450,000 euros, or threatened to publish the records. The extorters published hundred patient records a day on a Tor message board to add pressure for their demands. The leaked patient records contained patient's full names, home addresses, social security numbers, and the therapists' and doctors' notes from each session. After the extortation of the company failed, the extorters sent victims an email demanding them to pay 200 euros in 24 hours or 500 euros in 48 hours in order to avoid publishing their sensitive personal data.[3][4][5] The company's security practices were found to be inadequate: the sensitive data was not encrypted[6] and apparently the system root password was very weak.[7] The patient records were first accessed by intruders November 2018, while the security flaws continued to exist until March 2019.[5]

References

This article is issued from Wikipedia. The text is licensed under Creative Commons - Attribution - Sharealike. Additional terms may apply for the media files.