Malware

Tardigrade Malware Poses Unprecedented Threat to Biomanufacturers

by Jill McKeon

The Health Sector Cybersecurity Coordination Center (HC3) released an alert warning the healthcare sector of Tardigrade malware, a sophisticated strain of malware that was used to attack a vaccine...

Most Healthcare Organizations Expect to Be Ransomware Targets

by Jill McKeon

A recent survey published by IT security company Sophos reveals that 63 percent of healthcare organizations that weren’t impacted by ransomware last year expect to be the target of a ransomware...

Report: New Ransomware Variant Targeting Microsoft Exchange Servers

by Jessica Davis

Threat actors with likely ties to REvil ransomware are targeting and successfully exploiting vulnerabilities in Microsoft Exchange Servers with a new malware variant in cyberattacks against enterprise...

Scripps Reports Data Theft, EHR Back Online, but Global Outages Persist

by Jessica Davis

Scripps Health has restored the majority of its network and brought its Epic EHR back online, four weeks after falling victim to a ransomware attack, according to a May 27 status update.  The...

Microsoft: Active NOBELIUM Malware Actors’ Spear-Phishing Campaign

by Jessica Davis

The malware threat actors behind the SolarWinds Orion compromise in 2020 are continuing to target Microsoft networks and cloud assets, according to Microsoft insights. NOBELIUM historically targets...

Allergy Partners: Data Stolen During Ransomware Attack, EHR Outage

by Jessica Davis

Following reports of a ransomware attack and subsequent EHR outage at Allergy Partners in February, the North Carolina specialist is notifying an undisclosed number of patients that their data was...

CISA Eviction Guide for SolarWinds, Microsoft O365 Compromises

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency released eviction guidance for system compromises caused by the supply-chain attack on SolarWinds and subsequent...

Scripps Health EHR, Patient Portal Still Down After Ransomware Attack

by Jessica Davis

Scripps Health is continuing to operate under EHR downtime procedures and its website and patient portal remain offline, nine days after a ransomware attack struck its servers. The California...

CISA Alerts to New Ransomware, Trojan Using Public Pen Testing Tools

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency released an alert for a newer ransomware variant and remote access trojan (RAT) spotted in the wild using publicly...

Ransomware Hits Scripps Health, Disrupting Critical Care, Online Portal

by Jessica Davis

Scripps Health in San Diego was hit by a ransomware attack over the weekend, forcing the health system into EHR downtime. Some critical care patients were diverted and the online patient portal...

Joint Fed Guidance on Russian APT Cyberattacks, Exploits, Malware

by Jessica Davis

Russian Advanced persistent threat (APT) actors are actively targeting a range of US entities to gather intelligence agencies. Recent federal guidance aims to shed light on the tactics used in these...

4 Healthcare Providers, Vendors Report Data Breaches From 2020

by Jessica Davis

In recent weeks, a number of HIPAA-required notifications from covered entities and business associates have reported patient data breaches that occurred in 2020: Beacon Health...

Hackers Steal Data of 200K During CareFirst BlueCross DC Cyberattack

by Jessica Davis

CareFirst BlueCross BlueShield Community Health Plan District of Columbia (CHPDC), formerly known as Trusted Health Plan, recently notified 200,665 plan members that their data was compromised and...

Accellion Breach Tally for Centene’s Subsidiaries: 1.3M Patients Impacted

by Jessica Davis

The Department of Health and Human Services’ breach reporting tool shows over 1.3 million patients of Centene subsidiaries were impacted by the massive Accellion File Transfer Appliance...

Feds Seize Fraudulent COVID-19 Vaccine, Pharmacy, Pfizer Websites

by Jessica Davis

Multiple fraudulent COVID-19 vaccine, pharmacy, and other pandemic-related websites have been taken down, as a result of a federal government enforcement effort to combat fraud schemes and attacks...

Brute-Force Campaign on Windows SMBs Spreads Worming Malware

by Jessica Davis

Internet-facing Windows devices are being targeted by an active malware campaign known as Purple Fox. Hackers are leveraging brute-force attempts against SMBs to deploy the malware, which has worming...

Feds Warn of TrickBot Spear-Phishing Attacks Delivering Malware Payload

by Jessica Davis

A joint federal alert warns that all entities should be on the alert for a newly observed spear-phishing campaign, leveraging malicious emails to deliver the TrickBot malware payload....

Healthcare Hacking Incidents Rose 42% in 2020, 31M Patients Impacted

by Jessica Davis

Hacking incidents on the healthcare sector rose 42 percent from 2019, impacting a combined total of nearly 31 million patient records in 470 security incidents in the last year, according to the latest...