- IBM published results of new research on the average total cost of a breach by vertical market:
- $7.13 million = healthcare
- $6.39 million = energy
- $5.85 million = finance
- $5.06 million = pharma
- $5.04 million = tech
- $3.9 million = education
- Average amount of days before breach is discovered:
- 329 days = healthcare
- 324 days = government
- 283 days = education
- Security Week magazine reports on ransomware:
- Ransomware gangs earned at least $350 million in 2020
- 311% increase YoY
- $154,000.00 = average ransom demand
- PrismHR, headquartered in Hopkinton, PA, notified an unknown number of customers that their info may have been exposed after a ransomware attack.
- Phoebe Health Systems of Albany, Georgia, notified an unknown number of patients that they may be contacted by someone pretending to be a hospital employee to gain access to credit card numbers.
- Petersburg Medical Center of Alaska notified an unknown number of patients that their PHI was exposed after a former employee illegally accessed the info.
- Summit Behavioral Healthcare (SBHC), headquartered in Tennessee, notified anunknown number of patients that their PHI was exposed after email phishing attacks.
- Rainbow Rehabilitation Centers, headquartered in Livonia, Michigan, notified an unknown number of patients that their PHI was exposed after email phishing attack.
- Twelve Oaks Recovery, headquartered in Navarre, Florida, notified an unknown number of patients that their PHI was exposed after ransomware attack.
- Jewish Family Services of San Diego, CA, notified an unknown number of customers that their info was exposed after it was inadvertently exposed on a publicly accessible website.
- The City of Kingman in Arizona notified an unknown number of citizens that their info was exposed after ransomware attack.
- The National Cybersecurity Agency of France is warning companies worldwide that the nefarious Ryuk ransomware now has “worm-like” features, that allow it to spread itself between systems in an infected computer network.
- Atlanta Allergy & Asthma, headquartered in Atlanta, Georgia, notified an unknown number of patients that their PHI was exposed after a Nefilim ransomware attack.
- Millersville University of Lancaster County, Pennsylvania, notified an unknown number of students that their info was exposed after ransomware attack.
- Central Health of Canada notified an unknown number of women patients who used the hospital’s birthing center, that their PHI was exposed after being illegally accessed by a former employee.
- Qualys Corp., headquartered in Foster City, CA, notified an unknown number of customers that their info was exposed after a ransomware attack.
- Cochise Eye & Laser of Sierra Vista, CA notified over 100,000 patients that their PHI was exposed after ransomware attack.
- Morphisec Security published results of survey:
- 21% of healthcare consumers believe that network endpoints (which includes printers, scanners, fax machines and scanner) are the weakest link in healthcare providers’ cybersecurity defenses
- 20% of patients have had a healthcare provider that been hit by cyberattack.
- Hanover Area School District of Pennsylvania notified an unknown number of students that their info was exposed after ransomware attack. Gab, a social media app, notified an unknown number of users that their info may have been exposed after ransomware attack that stole 70GB of info.
- Google published results of research:
- 71% of companies have experienced increase in successful bot attacks
- 19% are using a “full bot management system” for protection
- 15% are protecting themselves against web scraping attacks
- 73% face web scraping attack every week
- 65% lost between 1% and 10% of revenue due to web scraping attack
- 53 days is average amount of time to resolve attack
- Oxford University of England announced that hackers recently broke into its network to steal COVID-19 research.
- Dr. Scott Green of Northern California is being investigated by officials for apparently violating HIPAA when he appeared in a Zoom meeting for a court appearance while he was in an operating room working on a patient.
- Fairfax County Public School District of Virginia notified an unknown number of students that their info was exposed after ransomware attack.
- Microsoft announced that it has discovered Chinese cyber-espionage operators chaining multiple zero day exploits to siphon email data from corporate Microsoft Exchange servers.
- Kaiser Permanente of California announced it has fired an employee for illegally accessing the PHI of an unknown number of patients.
- Intel announced it paid out $800,000 last year to white hat hackers as part of its bug bounty program.
- SITA, with US headquarters in Atlanta, Georgia, notified an unknown number of airline customers that their info was exposed after cyberattack, this includes American Airlines.
- The Center for Early Education in Hollywood, CA, notified an unknown number of students that their info was exposed after email phishing attack.
- Allergy Partners of Asheville, NC notified an unknown number of patients that their PHI was exposed after ransomware attack, and hackers are demanding a ransom of $1.75 million.
- Chester Upland School District of Pennsylvania notified an unknown number of students that that info was exposed after ransomware attack.
- Also claim that hackers diverted millions of dollars in state money
- Woodcreek Provider Services of Washington notified 210,000 patients that their PHI was exposed after ransomware attack.
- Spirit Airlines, headquartered in Miramar, Florida, notified an unknown number of customers that their info may have been exposed after data breach.
- Saint Agnes Medical Center of Fresno, CA notified an unknown number of patients that their PHI was exposed after email phishing attack.
- Saint Alphonsus Health Center of Idaho notified an unknown number of patients that their PHI was exposed after email phishing attack.
- ProPath Services of Dallas, TX notified an unknown number of patients that their PHI was exposed after email phishing attack.
- Southern Illinois University School of Medicine in Springfield, IL notified an unknown number of people that their info may have been exposed after cyber attack.
- Elara Caring, headquartered in Addison, TX, notified 100,400 patients that their PHI was exposed after email phishing attack.