Recent Threats Highlight the Importance of Cybersecurity in Healthcare
Topic: Recent Threats Highlight the Importance of Cybersecurity in Healthcare
Early on October 28, we got to know that personal and medical details – including names, social security numbers, and diagnostics images – of more than 3 million U.S. patients are available online, unprotected and accessible to anyone who knows how to search for it.
Later that same day, the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Department of Health and Human Services (HHS) issued a joint cybersecurity advisory about “Ransomware Activity Targeting the Healthcare and Public Health Sector”. The advisory details techniques used by malicious actors to infect healthcare systems with a specific ransomware strain – the Ryuk malware – and to exfiltrate data, both presumably for financial gains. More worryingly, the advisory describes not only attacks that could happen, but attacks that are taking place right now and whose imminent escalation is probable.
All of this is happening in the middle of a pandemic that puts huge pressure on healthcare staff. This pressure is what led us at Forescout Research Labs to release (coincidentally at the same day as the events discussed above) a new research report that highlights the risks that allow incidents like these to happen and the recommendations to protect organizations from these threats.
The risks we identified and the mitigations we recommended are in line with CISA/FBI/HHS’s:
- Lack of visibility into networked devices means that they may be vulnerable, unpatched, or misconfigured and can be used as an entry point or as the targets of malware. Identifying and patching vulnerable devices is paramount for mitigating risk.
- Improper network segmentation allows threats to spread within the network. Sensitive data and devices should be isolated from less critical segments.
- Several protocols and network communication expose devices to undue risk. Map and block externally accessible protocols whenever they are not needed.
Topic Discussed: Recent Threats Highlight the Importance of Cybersecurity in Healthcare
STATES WE SERVE
Alabama | Alaska | Arizona | Arkansas | California | Colorado | Connecticut | Delaware | Florida | Georgia | Hawaii | Idaho | Illinois | Indiana | Iowa | Kansas | Kentucky | Louisiana | Maine | Maryland | Massachusetts | Michigan | Minnesota | Mississippi | Missouri | Montana | Nebraska | Nevada | New Hampshire | New Jersey | New Mexico | New York | North Carolina | North Dakota | Ohio | Oklahoma | Oregon | Pennsylvania | Rhode Island | South Carolina | South Dakota | Tennessee | Texas | Utah | Vermont | Virginia | Washington | West Virginia | Wisconsin | Wyoming
NAVIGATE OUR WEBSITE
About Us | In The Media | Resources | Testimonials | Upcoming Events | Benefits of Verified Reviews | Blog | Contact Us | How It Works | How Our Marketing Tools Work | The Value We Deliver | Who We Are | Who We Serve | Why Choose Us | Explore our Analytics | Increase Conversions | Our Services | ReviewMultiplier™ | Social Media Marketing | Search Engine Optimization | Pay-Per-Click Advertising | Website Design & Development | Cybersecurity | RealPatientRatings.com®