Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Security Education Videos Scams & Phishing Your Security Mobile Security Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
The Battle Persists: Ransomware Continues Targeting Hospitals
Facebook   X   LinkedIn   Email

The Battle Persists: Ransomware Continues Targeting Hospitals

June 6, 2024

An ongoing challenge for hospitals is keeping safe from ransomware attacks. It's a tall order, and Blackcat ransomware group is flexing its claws and choosing the next victim. In fact, three U.S. government agencies advised our healthcare systems about Blackcat's devastating attacks. It's not the first time these systems have been warned about ransomware, and it won't be the last.

This latest warning about Blackcat came from the FBI, CISA (Cybersecurity and Infrastructure Security Agency), and HHS (Department of Health and Human Services). Before that, an FBI flash alert was declared in April 2022, and an advisory issued in December 2023.

Also called ALPHV Blackcat, this criminal gang continues to rack-up an impressive run of attacks. The group first surfaced in late 2021, and from then to September 2023, the group piled up more than one thousand victims and over $300 million in paid ransoms. Since then, Blackcat has focused its ransomware attacks on the healthcare industry.

For as long as the threat of Blackcat has loomed large, ransomware attacks themselves have an even longer history of targeting healthcare. Who would have imagined the first healthcare-related ransomware attack way back in 1989 would develop into a criminal industry targeting healthcare. And now, the attacks are happening more than ever before. For reasons unique to healthcare, hospitals are the perfect target for ransomware attacks.

Ransomware strikes put patient lives on the line when hospital services are disrupted. Just some of the human cost involves cancelled patient procedures, critical data locked and unavailable to doctors and support staff, medical devices at risk, and so much more. As a result, bad actors know hospitals are likely to pay a ransom quickly when patient care and lives are at risk. It's also a prime reason these attacks not only thrive, but it’s also the incentive behind why they continue to grow.

The good news is there are basic security steps healthcare organizations can take to get around paying the ransom and still have the data they need to run. Backing up devices and network data provides the information needed to continue with patient care. Also, employee education on how to avoid a ransomware attack can really pay off. Since phishing is the tool of choice for hackers, whether by email, text, or phone, an employee who knows phishing's red flags can stop an attack before it starts. That's something every healthcare organization, and patient, can benefit from.

Phishing ID Checkup

  • Mistakes in spelling and grammar
  • Unknown or spoofed sender email addresses
  • Links and attachments that are not expected
  • Poor graphics
  • A sense of urgency to take an action
  • Unsolicited messages from government agencies claiming there is some issue you need to deal with right away

Remember to always go directly into accounts to check on anything or make changes to your information. Never click links to get there and you’ll be more likely to keep your private information private.

 


Phishing Examples Of  The Current Top Ransomware Threats

Your Security

Phishing Examples Of The Current Top Ransomware Threats

Ransomware attacks have become increasingly prevalent and damaging in recent years and they do not discriminate. Every person, industry, or organization is fair game for cybercriminals wanting to make a buck; in most cases, many bucks. Cybercriminals are constantly on the lookout for vulnerabilities they can exploit to gain unauthorized access and deploy ransomware. Here, we highlight some of the most significant vulnerabilities leveraged by ransomware groups, their implications, and the importance of securing these weaknesses. READ FULL STORY

Credential Phishing Targets Hospital IT Desks

Corporate Security

Credential Phishing Targets Hospital IT Desks

Socially engineered attacks end with nothing social about them. In fact, some say a better name would be "anti-social attacks." Names aside, the attacks aim to exploit human trust while tricking people into divulging their personal identifiable information (PII) in ways that benefit an attacker. These tactics are posing a significant threat to data security and privacy. The American Hospital Association (AHA) shares its knowledge about how these social engineering attacks are making the rounds at hospital IT help desks. READ FULL STORY

It’s Time to Backup and Celebrate World Backup Day!

Your Security

It’s Time to Backup and Celebrate World Backup Day!

It’s getting close! The anticipation is building. It’s a great day on March 31, 2024. It may not be on your calendar, but it should be. That’s because just around the corner is World Backup Day! Yes, it’s a thing. There’s even a website. If you visit that website, you will see some stats that might just blow your mind as much as realizing it’s almost World Backup Day! Whether due to ransomware attacks, hardware failures, human error, or natural disasters, the risk of losing valuable data is ever-present. READ FULL STORY

Scattered Spider’s Web Of Lies, Deception And Ransomware

Your Security

Scattered Spider’s Web Of Lies, Deception And Ransomware

Warnings from the FBI and CISA came in loud and clear recently…Scattered Spider’s cyberattacks are more hazardous and crippling than ever before. Their high-profile, financially motivated attacks rely on social engineering for data theft, extortion, and ransomware attacks. And when both security agencies release a joint advisory warning to us about this threat group, it’s smart to listen. These threat actors made headlines for crippling financial attacks against several large organizations recently and they've increased the stakes playing their games. READ FULL STORY

Healthcare Gets A Shot In The Arm From Cybersecurity Toolkit

Identity Theft

Healthcare Gets A Shot In The Arm From Cybersecurity Toolkit

The Healthcare and Public Health (HPH) industry has long been a target for cybercrime. In particular, hospitals continue to be crippled by ransomware attacks. With patient lives and health services at risk, help with these devastating attacks has been desperately needed. And now, that help has arrived with a cybersecurity “toolkit.” The Biden administration created the toolkit in partnership with Health and Human Services (HHS) and the Cybersecurity and Infrastructure Security Agency (CISA). READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...