Cyber Threat Landscape

Malicious Bot Activity On the Rise in Healthcare

by Jill McKeon

The internet has a bot problem, cybersecurity company Imperva suggested in its 2023 Bad Bot Report. Nearly half of all internet traffic came from bots in 2022, while human traffic dipped to its lowest...

Clop, LockBit Leveraging 3 Known Vulnerabilities in Healthcare Ransomware Attacks, HHS Warns

by Jill McKeon

The Health Sector Cybersecurity Coordination Center (HC3) issued a sector alert about the current operations of Clop and LockBit ransomware groups. The Ransomware-as-a-Service (RaaS) groups have...

SEO Poisoning, Cobalt Strike Abuse, Emotet Continue to Threaten Healthcare Cybersecurity

by Jill McKeon

Search engine optimization (SEO) poisoning, Cobalt Strike abuse, and other tactics are increasingly being used against the healthcare sector, BlackBerry observed in its quarterly Global Threat...

Threat Actors Deviate From Common Tactics in Global Cyberattacks, Mandiant Observes

by Jill McKeon

Mandiant observed threat actors favoring the financial, professional services, high tech and healthcare industries in 2022, according to its newly released M-Trends 2023 report. The report aimed to...

DNS NXDOMAIN Flood DDoS Attacks Impacting Healthcare, HC3 Warns

by Jill McKeon

HHS warned the healthcare sector of ongoing DNS NXDOMAIN flood distributed denial-of-service (DDoS) attacks that could pose significant threats to security and system availability. HHS'...

HC3 Raises Concern Over KillNet DDoS Attacks Targeting Healthcare Sector

by Sarai Rodriguez

In just a few months since its emergence in 2022, pro-Russia hacktivist group KillNet has quickly evolved into a significant threat to the healthcare sector by executing distributed denial-of-service...

Health-ISAC Annual Threat Report Sheds Light on Healthcare Cyber Threat Landscape

by Jill McKeon

Health-ISAC released its annual threat report, providing insight into how healthcare cybersecurity experts view the current cyber threat landscape. More than 280 executives across Health-ISAC, CHIME,...

Fortra GoAnywhere MFT Vulnerability Impacts Blue Shield of CA

by Jill McKeon

Blue Shield of California notified 63,341 individuals of a healthcare data breach that stemmed from the Fortra GoAnywhere vulnerability. One of Blue Shield’s providers, Brightline Medical...

Dark Web Intel Underutilized by CISOs, Diminishing Healthcare Cybersecurity

by Sarai Rodriguez

The healthcare sector struggles to keep pace in a rapidly changing healthcare cybersecurity landscape, as some CISOs neglect to leverage dark web intelligence, resulting in a weaker cyber posture...

Healthcare DDoS Attacks Are Increasing, Microsoft Says

by Jill McKeon

Microsoft has observed an increase in distributed denial of service (DDoS) attacks against healthcare organizations in recent months, a blog post by the Azure Network Security Team explained. Microsoft...

CISA, FBI, MS-ISAC Warn Critical Infrastructure of LockBit 3.0 Ransomware Attacks

by Jill McKeon

The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Multi-State Information Sharing & Analysis Center (MS-ISAC) issued a joint...

MedusaLocker Ransomware Leveraged In Healthcare Cyberattacks

by Jill McKeon

MedusaLocker ransomware is the latest variant used to encrypt healthcare systems, the Health Sector Cybersecurity Coordination Center (HC3) warned in its latest analyst note. The note follows a July...

DDoS Attacks Continue to Threaten Healthcare Cybersecurity

by Jill McKeon

Distributed Denial of Service (DDoS) attacks are a major threat to healthcare cybersecurity, as exemplified by the ongoing cyberattack tactics of KillNet, a pro-Russian hacktivist group that has been...

GootLoader Malware, SEO Poisoning Impacting Healthcare

by Jill McKeon

New deployment methods of the GootLoader malware loader, search engine optimization (SEO) poisoning tactics, and the deployment of additional C2 frameworks such as Cobalt Strike and SystemBC are...

HHS, FBI, CISA Warn of North Korean State-Sponsored Cyber Threat Actors Targeting Healthcare

by Jill McKeon

North Korean state-sponsored cyber threat actors have been targeting the healthcare sector with ransomware, the National Security Agency (NSA), HHS, the Federal Bureau of Investigation (FBI), the U.S....

HC3: KillNet Hacktivist Group Uses DDoS Cyberattacks to Target Healthcare

by Jill McKeon

A hacktivist group known as KillNet is actively targeting the US healthcare sector with distributed denial-of-service (DDoS) cyberattacks, the Health Sector Cybersecurity Coordination Center warned in...

CISA: Federal Employees Targeted in Malicious Cyber Threat Campaign Using RMM Software

by Jill McKeon

UPDATE 1/27/2023 - This article has been updated to include a commment from ConnectWise. The Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), and Multi-State...

Downloaders, Ransomware, Among Top Healthcare Cyberattack Tactics in Q4

by Jill McKeon

Ransomware remained a primary healthcare cyberattack tactic in Q4 2022, BlackBerry noted in its new Global Threat Intelligence Report. BlackBerry's Threat Research and Intelligence team leveraged...

HC3 Warns Healthcare of AI’s Use in Malware Development

by Sarai Rodriguez

Artificial intelligence (AI) tools play an increasingly important role in cybersecurity. AI models can be leveraged to defend the healthcare sector against cyber threats. On the other hand,...

Pro-Russian Hacktivist Group KillNet Poses Threat to US Healthcare Cybersecurity

by Jill McKeon

The Health Sector Cybersecurity Coordination Center (HC3) issued an analyst note about KillNet, a pro-Russian hacktivist group that is known to be a threat to the US healthcare sector. The group has...