CNN

Hundreds of US lawmakers and staff affected by data breach

Mar 9, 2023, 5:00 AM | Updated: 12:45 pm

Hundreds of US House members and staff had their personally identifiable information stolen in a br...

Hundreds of US House members and staff had their personally identifiable information stolen in a breach of a DC health care insurance service, the House chief administrative officer told lawmakers on March 8 in a letter obtained by CNN. Photo credit: Mary F. Calvert/Reuters

(CNN) — Hundreds of US House members and staff had their personally identifiable information stolen in a breach of a DC health care insurance service, the House chief administrative officer told lawmakers Wednesday in a letter obtained by CNN.

The FBI is investigating the “significant data breach,” which occurred Tuesday and potentially involved thousands of enrollees in the DC Health Link marketplace, House Chief Administrative Officer Catherine Szpindor told lawmakers in the letter.

“It is important to note that at this time, it does not appear that Members or the House of Representatives were the specific target of the attack,” Szpindor wrote.

DC Health Link confirmed in a statement that “data for some DC Health Link customers has been exposed on a public forum.”

“We have initiated a comprehensive investigation and are working with forensic investigators and law enforcement. Concurrently, we are taking action to ensure the security and privacy of our users’ personal information,” the statement said, adding that DC Health Link will provide identity and credit monitoring services for impacted customers as well as credit monitoring services for all of its customers “out of an abundance of caution.”

The FBI said in a statement Wednesday that it is “aware of this incident and is assisting. As this is an ongoing investigation, we do not have any additional information to provide at this time.”

House Speaker Kevin McCarthy told CNN that the breach, which was first reported by Punchbowl News, is a “real concern.”

“Leader Hakeem Jeffries and I sent a letter to the DC Health about the concern we have here,” the California Republican said, noting that he does not know how many members may have been affected.

On a popular cybercrime forum this week, someone claimed to have sold the data belonging to DC Health Link. The advertisement for the stolen data, which CNN reviewed, claimed the leak affected 170,000 people and included Social Security numbers.

CNN was unable to independently verify those claims. The user advertising the data did not immediately respond Wednesday night when CNN asked in an online chat how much they sold the data for.

The advertisement was removed from the cybercrime forum later Wednesday night. It was not immediately clear why.

The user has been on the cybercrime forum for months and earned a reputation for selling compromised databases, Michael DeBolt, chief intelligence officer at security firm Intel471, told CNN.

“Like other financially motivated actors, (this actor) is opportunistic rather than seeking to target specific regions or sectors,” DeBolt said.

Contractors that store data belonging to US lawmakers could face greater scrutiny following this week’s breach.

The Committee on House Administration Republicans tweeted that Chairman Bryan Steil “is aware of the breach” and is working with Szpindor, the House chief administrative officer, “to ensure the vendor takes necessary steps to protect the (personally identifiable information) of any impacted member, staff, and their families.”

The top Democrat on the panel, Rep. Joe Morelle of New York, told CNN the data breach is “egregious” and that the FBI discovered it because the information ended up on the “dark web.”

He said in addition to investigating what happened, Congress needs to figure out how to allocate more resources so those who contract with the government can better protect this type of information.

“We are deeply concerned about DC Health Link’s data breach and the impact on our Members and staff. We will continue to communicate any updates we receive from law enforcement to impacted Members and staff,” a CAO spokesperson said in a statement.

We want to hear from you.

Have a story idea or tip? Send it to the KSL NewsRadio team here.

CNN

Afghan relatives offer prayers during a burial ceremony near the graves of victims who lost their l...

Niamh Kennedy and Radina Gigova, CNN

At least 300 people killed by flash floods in Afghanistan

At least 300 people have died in flash flooding that has ravaged northern Afghanistan in recent days, the Word Food Programme said Sunday.

6 days ago

The Apple Store at Towson Town Center Mall in Maryland is pictured. Apple Store workers in Towson, ...

Jordan Valinsky, CNN

Apple Store workers in Maryland vote to authorize strike

Apple Store workers in Towson, Maryland made history by voting late May 11 in favor of authorizing a strike.

6 days ago

Smoke from wildfires blankets the city as a couple has a picnic in Edmonton, Alberta, Saturday, May...

Paradise Afshar and Sara Smart, CNN

Canadians evacuate due to wildfires as air quality deteriorates

Thousands across Canada were urged to evacuate from blazing wildfires on Saturday, and the smoke emanating from them could be another danger.

7 days ago

Salvage crew members work on the deck of the cargo ship Dali on Friday, May 10....

Nicole Grether and Gloria Pazmino, CNN

Crews could use explosives to demolish part of Baltimore’s Key Bridge

Crews are expected to execute a plan to use small explosives to break apart a massive chunk of the Baltimore bridge that collapsed.

7 days ago

The sun is rising with a flare over Korla, Xinjiang Uygur Autonomous Region, China, on May 10....

Brian Fung, CNN

Why tonight’s massive solar storm could disrupt communications and GPS systems

An unusual amount of solar activity due to a solar storm this week could disrupt some of the most important technologies society relies on.

9 days ago

A customer wipes sweat from their face as they work out on a treadmill inside a Planet Fitness Inc....

Nathaniel Meyersohn, CNN

Planet Fitness will raise its $10 membership plan for the first time in 26 years

Planet Fitness will raise the price of its “classic” membership from $10 a month to $15 for new members beginning in the summer.

10 days ago

Sponsored Articles

a doctor putting her hand on the chest of her patient...

Intermountain Health

Intermountain nurse-midwives launch new gynecology access clinic

An access clinic launched by Intermountain nurse-midwives provides women with comprehensive gynecology care.

Young couple hugging while a realtor in a suit hands them keys in a new home...

Utah Association of Realtors

Buying a home this spring? Avoid these 5 costly pitfalls

By avoiding these pitfalls when buying a home this spring, you can ensure your investment will be long-lasting and secure.

a person dressed up as a nordic viking in a dragon boat resembling the bear lake monster...

Bear Lake Convention and Visitors Bureau

The Legend of the Bear Lake Monster

The Bear Lake monster has captivated people in the region for centuries, with tales that range from the believable to the bizarre.

...

Live Nation Concerts

All the artists coming to Utah First Credit Union Amphitheatre (formerly USANA Amp) this summer

Summer concerts are more than just entertainment; they’re a celebration of life, love, and connection.

Mother and cute toddler child in a little fancy wooden cottage, reading a book, drinking tea and en...

Visit Bear Lake

How to find the best winter lodging in Bear Lake, Utah

Winter lodging in Bear Lake can be more limited than in the summer, but with some careful planning you can easily book your next winter trip.

Happy family in winter clothing at the ski resort, winter time, watching at mountains in front of t...

Visit Bear Lake

Ski more for less: Affordable ski resorts near Bear Lake, Utah

Plan your perfect ski getaway in Bear Lake this winter, with pristine slopes, affordable tickets, and breathtaking scenery.

Hundreds of US lawmakers and staff affected by data breach