Fed warning to healthcare industry about malware:
- 80% of malware attacking healthcare networks is the Emotet Trojan
- Others are; FakeMS, BitCoinMiner, Shadowbrokers, Agent and TrickBot
- Sometimes two are used together to attack network
- Hidden in MS Word, Open Office, JavaScript and PDF files
- Report published on healthcare cyber attacks;
- 66% have been hit by ransomware in 2021
- 61% paid the ransom
- 65% of data recovered after paying ransom
- 97% then invested more in cybersecurity solutions
- Elastisearch notified 40,000 students that their info was exposed after breach.
- Mandiant Security Software notified an unknown number of customers that their info was exposed after being hit by Lockbit ransomware gang
- Paige Thompson, former employee of Amazon.com in Seattle, WA, in on trial for allegedly stealing the info on 100 million Capital One credit card customers.
- Shields Health Care, headquartered in Quincy, MA, notified 2 million patients in New England that their PHI was exposed after hacker stole the info.
- Ava Virginia Misseldine was arrested in Utah and charged with stealing and assuming identity of a child who passed away in Ohio in 2003.
- The Department of Health & Human Services’ Office for Civil Rights, published list of recent breaches. The cyberattacks include the state, number of individuals affected, date reported and the location of the
breached information:- Burman & Zuckerbrod Ophthalmology Associates (Michigan; 1,337; June 1; EMR)
- Fishman Vision (California; 2,646; June 1; EMR)
- Associated Ophthalmologists of Kansas City (Missouri; 13,461; May 31; EMR)
- AU Health (Georgia; 50,631; May 27; EMR, other)
- Shoreline Eye Group (Connecticut; 57,047; May 27; EMR)Sylvester Eye Care (Oklahoma; 19,377; May 27; EMR)
- Finkelstein Eye Associates (Illinois; 48,587; May 27; EMR, network server)
- North Lakes Pain Consultants (Texas; 8,620; May 27; network server)
- Fred Hutchinson Cancer Center (Washington, 500; May 25; email)
- Moyes Eye Center (Missouri; 38,000; May 25; EMR)
- The Multiple Sclerosis Center of Atlanta (Georgia; 2,820; May 25; email)Homestead Hospice & Palliative Care (Georgia; 28,332; May 23; email, laptop)
- Oswego County Opportunities (New York; 7,766; May 20; email)
- OE Enterprise (North Carolina; 4,075; May 20; email)
- Bryan County Ambulance Authority (Oklahoma; 14,273; May 18; network server)
- Allaire Healthcare Group (New Jersey; 13,148; May 17; email)
- Northern Rockies Orthopaedics (Montana; 6,701; May 17; email)
- Genetics & IVF Institute (Virginia; 606; May 11; network server)
- Summit Healthcare Association (Arizona; 1,403; May 11; network server)
- RiverKids Pediatric Home Health (Texas; 3,494; May 10; email)
- McKenzie Health System (Michigan; 25,318; May 10; network server)
- NuLife Med (New Hampshire; 81,244; May 9; network server)
- Oklahoma City Indian Clinic (Oklahoma; 38,239; May 9; network server)
- Mindpath Care Centers (North Carolina; 1,781; May 6; email)
- Mississippi Sports Medicine and Orthopaedic Center (Mississippi; 500; May 6; network server)
- North Alabama Bone & Joint Clinic (Alabama; 500; May 6; email, network server)
- Wagner Heights Nursing and Rehabilitation Center (California; 4,676; May 6; email)
- WellDyneRx (Florida; 5,122; May 6; email)
- Greater Nashua Mental Health (New Hampshire; 1,085; May 4; network server)
- Vail Health Services (Colorado; 17,039; May 4; network server)
- Thompson Child & Family Focus (North Carolina; 986; May 3; network server)
- Kenosha Community Health Center (Wisconsin; 2,688; May 3; email)
- FPS Medical Center (Arizona; 28,024; May 2; network server)