Friday, March 20, 2026

Latest

Manage My Health patients at risk of extortion and identity theft

Manage My Health response criticised
Stock photo.

Thousands of Manage My Health patients may face serious risks of identity theft, blackmail, and financial crime after a ransomware group calling itself “Kazu” claimed to have stolen more than 400,000 sensitive medical and personal files and threatened to release them unless a $60,000 ransom is paid within 48 hours.

Cyber security experts warn the data, which allegedly includes clinical notes, lab results, medical photos, passports, and contact details, appears to be accessible rather than encrypted, raising fears of targeted extortion.

Critics told state media Manage My Health was slow to respond, unclear about the scope of the breach, and inadequate in communicating with patients and clinics.

Analysts believe the hackers are using the New Zealand breach to build credibility and pressure other targets, while warning that paying the ransom offers no guarantee the data would not still be leaked. Security specialists say the incident highlights serious failures in oversight and safeguards, with some calling it the most damaging health data breach New Zealand has seen.

Image credit: Towfiqu Barbhuiya

Support DTNZ

DTNZ is committed to bringing Kiwis independent, not-for-profit news. We're up against the vast resources of the legacy mainstream media. Help us in the battle against them by donating today.

Promoted Content

No login required to comment. Name, email and web site fields are optional. Please keep comments respectful, civil and constructive. Moderation times can vary from a few minutes to a few hours. Comments may also be scanned periodically by Artificial Intelligence to eliminate trolls and spam.

11 COMMENTS

  1. Yes they can use AI to link other data breaches across the internet linked to the same person whatever to construct a fake identity and steal that identity

  2. I just went to Manage My Health to change My password
    This is what I got
    Sorry, you have been blocked
    Why have I been blocked?
    This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data.

    • You should call them as as soon as possible, the message may indicate that your data and/or account has been breached. Get them you need to reset your password and email the link to reset it to you.

      The helpline is 0800 900 063

      If that doesn’t work call your doctor’s surgery which should automatically connect you to MMH.

      *

      Below are recommended steps to attempt to solve this sort of issue. But in your case I would contact them directly – it is imperative that you get control of your account via a new password as soon as possible.

      – Use an Alternate Browser or Device: Sometimes, browser settings or cached data can cause issues. Try using a different web browser or device altogether for accessing the ManageMyHealth website.

      – Clear Browser Cache: Clear your browser’s cache and cookies. This can resolve issues stemming from corrupted or outdated data.

      – Enable JavaScript: Ensure that JavaScript is enabled in your browser, as it may be required for certain website functions.

      – Disable Security Plugins: Temporarily disable any browser extensions or security plugins that may conflict with your access to the site.

      • Not necessarily — being blocked from logging in to Manage My Health does not automatically mean your account was one of the hacked ones.

        • Read properly:

          “The message MAY indicate that your data and/or account has been breached”

          This sentence doesn’t say it HAS been breached but that it MAY have been breached and you should act accordingly.

          MMH is now using more restrictive security measures in response to the breach which will likely produce a fair amount of false positives even when genuine users attempt to login.

          The only change I had to make was to turn off my VPN, but I can’t get through by phone to cancel my account, nor are they responding to support messages.

          I no longer trust Manage My Health with to handle my confidential information as they have failed in their core duty to ensure the protection of critically sensitive data.

  3. Great to see you following up on the information I posted in the comments 5 days ago. My attempts to get the information out early were ignored by every new desk in the country costing potential victims of the attack valuable time and exposing them to further risk.

    This is not the first time the group has struck.

    Just 6 weeks before in November 2025 U.S based online health services provider Doctor Alliance (a ManageMyHealth analogue) lost 353 GB of data to the group samples of which were posted on the dark web. They were given a November 21 deadline to pay $200,000 USD or the data would be sold to others.

    They paid, as ManageMyHealth will have to. Then Kazu hacked them again, this time extracting a total of approximately 5 million files of nearly 1.27 terabytes of stolen data.

    They then asked for a ransom $500,000 USD or they would release all of the files to the dark web for sale. Samples of the files were provided as evidence.

    If you use ManageMyHealth you need to take this absolutely seriously. Your entire online identity is at risk from multiple attack vectors including your credit rating, health insurance, and privacy.

    Find out how you are risk here:

    https://cybernews.com/security/doctor-alliance-breach-allegedly-exposes-patients-health-data/

    Kazu’s dark web sale:

    https://databreaches.net/2025/11/18/from-bad-to-worse-doctor-alliance-hacked-again-by-same-threat-actor/

    Please share this information on your social media. People have to know how serious this breach is.

    If you use the service IMMEDIATELY change ALL of your passwords, not just ManageMyHealth, and use a password manager if you can.

    • Thank you for all your information- you obviously know what you’re talking about. Can you please keep the pressure on the media. Peoples personal information needs to be protected at all costs and if it’s up somewhere online it needs

      The government needs to shut this down STAT. And good luck to them thinking they are going to go online with digital ID etc. it’s a hard NO.

  4. Kazu reduces ransom deadline to 48 hours and will release the information for free on Tuesday if not paid after receiving no response from ManageMyHealth.

    “To prove our claims and increase the chances of successful deals in the future, we decided to leak the data for free if they don’t pay the ransom”

    “Their ignorance of our emails and messages, along with their failure to acknowledge users or explain exactly what happened, is the main issue. Many MMH users have been asking the company for an explanation, but they’ve either ignored them or responded with vague statements.”

    Kazu said it had opted for a low-ball ransom demand of $60,000 “to protect the data and quickly close the deal”.

    “But it seems the company doesn’t care about their users’ data.”

    https://www.rnz.co.nz/news/national/583170/managemyhealth-breach-patients-at-risk-of-identity-theft-extortion-experts

    • Exactly.
      Now just watch the govt inspired “new rules” and restrictions plus a digital ID to “keep your information safe”!
      BULLSHIT – all part of the world hoax organisation / wef / control freak plan.
      As has been said by others, prosecution of all those including these liars / fraudsters / mass murderers is not the answer!
      Mussolini protocol is far more appropriate!

      Ever wonder why you receive a letter from a government department that has your initials and name in capitals??
      Ever wonder why you are told that to change service providers suppliers such as medical / doctors surgeries you need your birth certificate?
      These are not a frivolous questions – look it up and you will see – control and manipulation planned long ago – just waiting for your permission and acceptance.
      Wake up people!

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Wellington
few clouds
12.9 ° C
13.8 °
11.6 °
83 %
6.7kmh
20 %
Fri
14 °
Sat
16 °
Sun
18 °
Mon
19 °
Tue
19 °




Sponsored



Trending

Sport

Daily Life

Opinion

DTNZ News Network