World

Hackers hit hospitals as pandemic intensifies

FBI this week warns of rise in ransomware attacks, calls on stronger network protection

Updated 5 years ago · Published on 01 Nov 2020 12:45PM

Hackers hit hospitals as pandemic intensifies
A nurse getting help from a colleague to put on her personal protective equipment at the Intensive Care Unit for Covid-19 cases, in the San Filippo Neri hospital in Rome, on October 29, 2020. – AFP pic, November 1, 2020

WASHINGTON – Hackers are stepping up attacks on healthcare systems with ransomware in the United States and other countries, creating new risks for medical care as the global coronavirus pandemic accelerates. 

Alerts from US authorities and security researchers highlight a wave of cyberattacks on hospitals coping with rising virus infections.

An unusual warning this week from the FBI with the Departments of Homeland Security and Health and Human Services, underscored the threat.

The three agencies "have credible information of an increased and imminent cybercrime threat to US hospitals and healthcare providers," said the alert issued on Wednesday, calling on health systems to "take timely and reasonable precautions to protect their networks from these threats."

Media reports have cited several US hospitals hit by ransomware. 

One of them, the University of Vermont Medical Center, said in a statement on Thursday it was working with law enforcement on "a now confirmed cyberattack that has affected some of our systems" which has had "variable impacts" on patient care.

Daniel dos Santos of the computer security firm Forescout said cash-strapped medical centers are particularly attractive targets for hackers and that at least 400 hospitals had been hit in the past few weeks in the US and Britain.

Hackers are aware that "health care is the most likely to pay the ransom because their services are critical," dos Santos said.

"Stopping services means that people will literally be dying."

For hospitals unable or willing to pay, "it would mean going back to pen and paper, which can cause huge slowdowns," he added.

Forescout said in a report that while many hospitals have upgraded computer systems, most use a variety of connected devices such as patient monitors or CT scanners which "act as the weak links in the network" because they transmit data over insecure channels.

In one sign of the troubles looming, dos Santos and fellow researchers said they discovered data on some three million US patients online, "unprotected and accessible to anyone who knows how to search for it.," the Forescout report said.

Most targeted

Ransomware is a longstanding security issue and health care has been a frequent target. A September attack disrupted Universal Health Services, which operates hospitals in the US and Britain.

But security experts say the attacks are accelerating as the pandemic worsens.

Researchers at the security firm Check Point said its survey showed health care has been the most targeted industry by ransomware, with a 71% jump in attacks on US providers in October from a month earlier.

Check Point said there have been significant rises in ransomware attacks on hospitals in Asia, Europe and the Middle East as well. Globally, the firm said ransomware attacks were up 50% in the third quarter compared with the first half of this year.

Many of the attacks use a strain of ransomware known as Ryuk, which security researchers say may be tied to North Korean or Russian cybercriminals.

The US government warning said health organisations are being targeted by phishing attacks to get access to the systems, with hackers using sophisticated tools including TrickBot software which can harvest credentials and exfiltrate data.

The Canadian government's Cyber Centre issued a similar warning in early October, warning of Ryuk ransomware "affecting multiple entities, including municipal governments and public health and safety organizations in Canada and abroad."

"The ransomware problem is steadily worsening and a solution desperately needs to be found," said Brett Callow of the security firm Emsisoft.

"We believe that solution is a prohibition on the payment of demands. Ransomware exists only because it's profitable. If the flow of cash stops, the attacks will stop and hospitals will no longer be at risk." – AFP, November 1, 2020

Related News

Malaysia / 1w

Dr Noor Hisham denies claims that the Pfizer vaccine caused deaths

Events / 1w

Penang CM leads investment, trade mission to the US

Malaysia / 1w

Intelligence agencies, AI, and the new battlefield for public opinion

Opinion / 4w

Foreign influence, covert activities within Malaysian politics and society

Opinion / 1mth

“I’m not a war criminal, I’m a patriot”: Shavendra Silva’s amnesia tour meets the receipts

Malaysia / 1mth

MP calls on US to take legal action against Hadi over ‘plot to topple government’ statement

Spotlight

Malaysia

Nhaveen murder trial: Accused admits taunting victim but denies fatal assault

Malaysia

MCMC probes alleged AI sexual abuse targeting Kedah pupils, teachers

Malaysia

Anwar checks final preparations for Budget 2027

Malaysia

Sarawak election could be called within weeks of Budget 2027

Malaysia

Anwar contacts Prabowo over ‘alarming’ transboundary haze

Malaysia

King calls for schools in haze-hit areas to close

Malaysia

Parents worry over children’s exposure as haze worsens

By Alfian Z.M. Tahir

You may be interested

World

AI agents used in cyberattacks targeting South Korean banks, CrowdStrike says

World

59,275 hotspots turn South Sumatra into haze hotspot as respiratory cases surge

World

Explosions rock Riyadh airport as Yemen’s Houthis claim missile attack

World

US to livestream Nidal Hasan’s firing squad execution on December 3