Healthcare

Industry

Colorado Laboratory Faces Action Breach Lawsuits After Medusa Ransomware Hack

April 15, 2024

Six months after an employee opened a phishing email sent by ransomware gang Medusa, a Colorado-based pathology laboratory is notifying more than 1.8 million patients that their sensitive information was compromised – one of the largest breaches reported by a medical testing lab to U.S. federal regulators to date.

Summit Pathology as of Thursday is already facing eight proposed federal class action lawsuits filed in the past week centering on the breach. The Summit incident ranks among some of the largest breaches reported by medical laboratory testing firms to date.

IT systems affected by the incident contained demographic and healthcare information, including names, addresses, medical billing and insurance information, diagnoses, dates of birth, Social Security numbers, and financial information.

read more

Systems and Phones Down at Idaho Weiser Memorial Hospital

October 2, 2024

“Weiser Memorial Hospital (“WMH”) recently experienced a cybersecurity incident involving our computer systems. Immediately upon learning of this activity, WMH took action to secure our environment and launched an investigation to better understand what information was potentially impacted. The investigation into the incident remains ongoing.” as reported on their Facebook page. “Further information will be released should Weiser learn of new developments during the ongoing investigation.”

The hospital dealt with weeks of downed computer systems and phone lines. In October 2024 the hospital admitted the outages were caused by a cyberattack and acknowledged that it was investigating the claims made by Embargo operators.

read more

Cyberattack at NorthBay Health

April 1, 2024

NorthBay Health, which operates two hospitals and multiple clinics in Solano County, has been the victim of a systemwide cyberattack. The hospital was forced to turn patients away and cancel appointments following the ransomware attack.

read more

Georgia Hospital Under Cyberattack Unable to Access Record System

November 3, 2024

A ransomware attack on a prominent hospital in southwest Georgia knocked out access to the electronic health record system.

Memorial Hospital and Manor in the town of Bainbridge posted an urgent message on Sunday warning patients that the hospital’s IT team had discovered a ransomware attack the morning before when employees found notifications from the virus protection software.

“This impacts access to our Electronic Health Record system. While we believe this issue will not impact either the level or the quality of care we provide to our patients, we want to be fully transparent regarding this situation,” the hospital said.

The attack was claimed on Tuesday by the Embargo ransomware gang, which is trying to extort a ransom out of the hospital by threatening to leak 1.15 terabytes of purportedly stolen data by November 8.

read more

Network Shutdown after Ransomware Attack at Synlab Italy

April 18, 2024

Synlab Italia has suspended all its medical diagnostic and testing services after a ransomware attack forced its IT systems to be taken offline. Although the company has not confirmed, some sensitive medical data may have been exposed to the attackers. As a result of this incident, all laboratory analysis and sample collection services have been suspended until further notice. Customers are advised to use phone to contact Synlab because email communication services are inactive.

No major ransomware gangs has claimed responsibility for the cyberattack on Synlab Italia.

read more

Ransomware attack at Synnovis Throws >3000 UK Hospitals into Chaos

June 3, 2024

Synnovis was hit by a ransomware cyber-attack on Monday 3 June 2024. NHS reports that this attack has caused significant disruption in south east London across a range of different treatments. The hackers injected malware into Synnovis’s IT system, which locked the entire computer system until a ransom was paid to regain control and remove the ransomware. Over 3,000 hospital and GP appointments were thrown into chaos as a direct result. Synlab, the parent company of Synnovis, experienced a total of three significant cyber security breaches in the past year.

UPDATE May 2025: More than 11 months after a ransomware attack, the affected patients still have not been informed about what data of theirs was exposed in the incident, with material about sexually transmitted infections and cancer cases being included in the leaks.

read more

Operations Impacted at Top Pediatric Hospital in US

February 3, 2024

Lurie Children’s Hospital in Chicago took IT systems offline after a cyberattack. The security incident severely impacted normal operations also causing the delay of medical care. Lurie confirmed that the attack disrupted the hospital’s access to the internet, email, phone services, and the MyChat platform. “The incident has impacted phones, emails, internet service, some elective surgeries and procedures even had to be canceled.”

read more

Dozens of Hospitals offline in Romania

February 11, 2024

Over a hundred Romanian healthcare facilities have been been affected by a ransomware attack, with some doctors forced to resort to pen and paper. Children’s and emergency hospitals were among those hit, with other facilities going offline as a precaution. 25 Hospitals were affectec by the attack and 79 other healthcare facilities were taken offline while investigations were carried out to determine if they had been affected.

The cyber extortionists demanded 3.5 Bitcoin, worth over £130,000, to unlock vital files which they had encrypted. But Romanian cyber officials said data had been recently backed up, reducing the impact.

read more

Biggest Data Breach to-date in France Affects 50% of the Population

January 28, 2024

Two French service providers for medical insurance companies were targeted by a cyberattack. The hack has been determined to impact over 33 million people in the country. The “tiers payant,” a payment system in which the patient doesn’t have to pay the full cost of medical services upfront, may be unavailable for certain health professionals but still available for the patients.

While the exposed data does not include financial info, it is still enough to raise the risk of phishing scams, social engineering, identity theft, and insurance fraud for the exposed individuals.

read more

Change Healthcare Cyberattack Causes Widespread Disruptions at US Pharmacies

February 21, 2024

Ransomware attack impacts more than 100 Change Healthcare services, including benefits verification, claims submission, and prior authorization. As soon as the breach was detected, Change Healthcare took the drastic step of disconnecting its systems to prevent further damage. Retail pharmacies, some now forced to revert to manual processing, face delays, sparking concerns among patients relying on timely medication.

The AHA (American Hospital Association) has advised health systems to disconnect from Change Healthcare and Optum services. This breach, reportedly due to hackers exploiting vulnerabilities in the ConnectWise ScreenConnect remote IT platform and using LockBit malware, underscores the vulnerability of consolidated healthcare data systems.

Update: “RansomHub leaked stolen data from United Health subsidiary Change Healthcare following a BlackCat/ALPHV attack, suggesting some form of collaboration between the two.” Change Healthcare paid $22 million in hopes of securing the stolen data

read more