Ransomware
Ransomware is a type of malicious software (malware) that systematically encrypts files accessible to the user. The malware then demands a ransom, frequently payable in Bitcoin, in exchange for the encryption key to decrypt the files. While ransomware is not new, during 2016, there was a dramatic increase in the number of attacks against healthcare organizations. In the spring of 2016, the FBI issued an alert and requested that organizations do not pay ransomware demands. Eagle Consulting Partners recommends multiple security controls to prevent these attacks including employee security awareness training, web filtering technology, a robust patching program and others. Critical controls to mitigate this exploit should it occur are robust incident response capability, isolated and redundant data backup and data recovery capability.
by Gary Pritts | Jun 14, 2018 | Business Associates & Others, General News, Health Information Technology, HIPAA, Large Providers, Physician Practices, Threat Intelligence
Cyber-attacks on healthcare providers increased from 2016 to 2017, and are still trending upwards. Extensive private data plus inadequate security makes healthcare organizations attractive targets for attackers and, all too often, victims of their own errors.
Read More
by Gary Pritts | Jan 30, 2018 | DD Boards, Health Information Technology, Threat Intelligence
SamSam ransomware is making a name for itself by attacking healthcare-related organizations. Prior to its famous attack on Allscripts, SamSam infected three hospitals. Ransomware remains a significant risk for organizations in 2018.
Read More
by Gary Pritts | Jan 26, 2018 | General News, Health Information Technology, Threat Intelligence
Allscripts’ EHR taken down by ransomware for extended period of time. All clients were affected. Case study emphasizes the importance of backups and emergency plans.
Read More
by Gary Pritts | Jan 20, 2018 | DD Boards, General News, Health Information Technology, Threat Intelligence
Hermes ransomware attacks small physician practice. Ransomware encrypted database files prior to routine backup. Entire EHR database lost and backup unusable. Attack illustrates the importance of multiple generations of backup and separating backup from computer network.
Read More
by Gary Pritts | May 15, 2017 | General News, Threat Intelligence
U.S. Homeland Security and Health and Human Services have issued an urgent alert to healthcare, government and other organizations regarding an unprecedented, rapidly ransomware attack. It has infected over 10,000 organizations and 200,000 individuals worldwide.
Read More