Hospitals in the crosshairs of bad actors brandishing ransomware

The cybersecurity arm of the Department of Homeland Security is urging hospitals and other healthcare providers to brace for ransomware attacks during the present surge of COVID-19 cases.

DHS’s Cybersecurity and Infrastructure Security Agency, together with HHS and the FBI, issued the formal alert late Wednesday.

In the announcement, the three agencies say they have “credible information of an increased and imminent cybercrime threat” to the public health sector.

The document lays out technical details and mitigation recommendations tuned to this particular set of threats.

The federal agencies believe the attackers will probably use the Ryuk access-blocking technique. Ryuk is a type of ransomware deployed by criminals demanding money in exchange for restoring access to critical IT infrastructure and networks.

In coverage of the alert by the Associated Press, a ransomware expert in the private sector says many crime groups use Ryuk, paying its developers a cut.

The coverage also quotes the CTO of a cybersecurity company who remarks that the U.S. is experiencing “the most significant cybersecurity threat we’ve ever seen.”

Numerous outlets covering the development have noted the timing of the stepped-up activity, coming as it does not only during a COVID spike but also at the height of an especially divisive presidential campaign season.

“While no one has proven suspected ties between the Russian government and gangs that use the Trickbot platform” to infect networks with Ryuk, there is “no doubt that the Russian government is aware of this operation,” a close ransomware observer says in the AP report.  

Dave Pearson

Dave P. has worked in journalism, marketing and public relations for more than 30 years, frequently concentrating on hospitals, healthcare technology and Catholic communications. He has also specialized in fundraising communications, ghostwriting for CEOs of local, national and global charities, nonprofits and foundations.

Around the web

Compensation for heart specialists continues to climb. What does this say about cardiology as a whole? Could private equity's rising influence bring about change? We spoke to MedAxiom CEO Jerry Blackwell, MD, MBA, a veteran cardiologist himself, to learn more.

The American College of Cardiology has shared its perspective on new CMS payment policies, highlighting revenue concerns while providing key details for cardiologists and other cardiology professionals. 

As debate simmers over how best to regulate AI, experts continue to offer guidance on where to start, how to proceed and what to emphasize. A new resource models its recommendations on what its authors call the “SETO Loop.”