Healthcare

Industry

Two Major NY Hospitals Struggle to Recover from Lockbit Cyberattack

September 1, 2023

Two major hospitals serving thousands in upstate New York are struggling to recover from cyberattacks that were announced last week.

The two facilities, Carthage Area Hospital and Claxton-Hepburn Medical Center, serve an area with more than 200,000 people in Jefferson, Lewis and St. Lawrence Counties. For two weeks, the hospitals have been dealing with a cybersecurity incident that forced them to divert ambulances to other local hospitals and reschedule most appointments.

Richard Duvall, chief executive officer of both hospitals, said “no demand for a ransom has been made.”

read more

Ransomware Attack at Russian Medical Laboratory

July 18, 2023

Customers of the Russian medical laboratory Helix have been unable to receive their test results for several days due to a “serious” cyberattack that crippled the company’s systems over the weekend. According to a statement the lab issued Monday, hackers attempted to infect the company’s systems with ransomware.

read more

USA’s ASPR issues Alert as Ransomware Gang Attacks Cancer Centers.

June 16, 2023

An attack against a US cancer center in June 2023 rendered digital services unavailable, limiting the center’s patient care capabilities.The group calling itself TimisoaraHackerTeam (THT), is not widely known but it has a history of attacking medical facilities by exploiting known vulnerabilities and using a living-off-the-land approach to minimize detection.

ASPR Healthcare and Public Health Sector issued a Cybersecurity Notification and warning on June 16, 2023: “Even among hackers, there is often a code of conduct not to attack hospitals or other HPH organizations that could cause physical harm,” HHS stated. “However, in their purposeful targeting of the healthcare sector, groups like THT abstain from that moral code.”

read more

Ransomhouse Extortion Group Paralyzes Barcelona Hospital Operations.

March 6, 2023

A cyberattack has targeted one of Barcelona’s leading hospitals, shutting down its computer system and forcing the cancellation of 150 non-urgent operations and up to 3000 patient checkups. The hospital’s SAP system wasn’t impacted, but all applications and communications remain broken as work to restore critical systems continues. This means that patient information for physicians is out of reach, and the situation impacts care services.

In addition to the cancellations mentioned above, the hospital delayed 800 urgent cases and diverted patients to other hospitals.

read more

Town Mayor Criticizes Bluewater Health Hospital on Public Dissemination of Ransomware Attack Information.

October 23, 2023

Bluewater Health appears to be the hardest hit of a group of southwestern Ontario hospitals targeted in the cyber-attack. The affected hospitals said restoration is not expected to be complete until mid-December. Patient records dating back more than 30 years, affecting 267,000 patients, were stolen by last month by hackers. All patients treated at its Sarnia Lambton Hospitals from 1992 onward were affected by the breach. In addition, the social insurance numbers of about 20,000 people were taken.

Bluewater Health has refused to answer questions about the ransomware attack, instead issuing updated statements on its recovery progress.

read more

Attack on Swedish medical technology provider disrupts municipal British ambulance services.

July 18, 2023

Attack on Swedish medical technology provider disrupts municipal British ambulance services.
Swedish healthcare and medical technology provider Ortivus disclosed a cyber incident that took place on July 18, which affected UK customers using their cloud-hosted MobiMed ePR electronic patient record system. The UK National Health Service (NHS) confirmed the intrusion impacted the ambulance services in several parts of the country, preventing access to patient medical histories by ambulance crews.

read more

Tri-City Medical Center in CA Operations Affected for Days

November 9, 2023

Tri-City Medical Center is diverting ambulance traffic to other hospitals Thursday as it copes with a cybersecurity attack that has forced it to declare “an internal disaster” as workers scramble to contain the damage and protect patient records. The Oceanside facility’s management confirmed the situation in a brief statement, indicating that the hospital’s emergency department remains “prepared to manage emergency cases” that may arrive in private vehicles and is “working with our other health system partners to ensure the provision of health care for our community.”

On Monday, 13 November, ambulance deliveries remain diverted from its emergency department and elective procedures remain canceled as the medical provider deals with the fallout of an attack on its digital assets and continues to operate in a state of “internal disaster.”

read more

Cyber Incident at Healthcare Solutions giant Henry Schein

October 14, 2023

On October 14, 2023, Henry Schein determined that some of its manufacturing and distribution businesses had been the target of a cyberattack. In response, Henry Schein reported the incident to law enforcement and took steps to contain the incident, including taking down portions of its computer system. Henry Schein also enlisted the help of third-party cybersecurity and forensic information technology experts to determine if any confidential information stored on its computer network was subject to unauthorized access.

The company has not shared any other details on the cyberattack, but its brief description suggests that it may have involved ransomware.

UPDATE 6 August 2024: The cyberattack disrupted its manufacturing and distribution businesses and had a residual impact on the company’s financial performance in 2024. ,

read more

Cyberattack Shuts Down 14 Facilities at Largest Healthcare System in MI

September 5, 2023

McLaren Healthcare in Michigan reported outages affecting billing and electronic health record systems. According to the Detroit Free Press, McLaren had to shut down the computer network at 14 different facilities — a situation that got so bad that employees had to communicate through their personal phones. The Black Cat/AlphV ransomware gang claimed to have stolen 6 TB of data.

UPDATE: 13 November: McLaren reports Black Cat stole data on 2.2 million patients.

read more

Russian Medical Lab Helix Hit by Ransomware Attack

July 8, 2023

Customers of the Russian medical laboratory Helix have been unable to receive their test results for several days due to a “serious” cyberattack that crippled the company’s systems over the weekend. Hackers attempted to infect the company’s systems with ransomware. The company told Russian state-owned news agency Tass that its tech team partially restored the functionality of its website, mobile app and other e-health services without paying a ransom.

No customer personal data was leaked. Service disruptions prevented the company from delivering medical test results to its customers on time. Helix did not respond to a request for comment. It is unclear which group is responsible.

read more