Skip to main content

Digital Trends may earn a commission when you buy through links on our site. Why trust us?

Hackers are stepping up attacks on health care facilities and researchers

Cyberattacks against health care facilities and public health researchers have nearly doubled amid the coronavirus pandemic, according to new data.

Recommended Videos

The statistics provided to Digital Trends by cybersecurity firm Infosec and compiled from the U.S. Department of Health and Human Services show there have been 127 breaches of U.S. hospitals and health care systems from February 1 through May 18 in 2020.

That’s a nearly 50% increase from the 66 breaches during the same span of time in 2019. The cybersecurity firm Bitdefender also noted a 60% increase in breaches from February to March of this year.

The Red Cross says it has seen an increase in cyberattacks on health care facilities and hospitals since the start of the COVID-19 pandemic.

The Red Cross released an open letter yesterday, first reported by Reuters, that was signed by 48 politicians and dignitaries from around the world calling for governments to protect health care systems and hospitals from attacks.

“Over the past two months there has been one attack every three days on healthcare entities,” said Stéphane Duguin, Chief Executive Officer of the CyberPeace Institute, in a statement to Digital Trends. CyberPeace released the letter jointly with the Red Cross. “Today’s call is aimed not only at attacks but also for more robust state-sponsored response.”

Recent weeks have seen cyberattacks hit health care centers in the Czech Republic, France, Spain, Thailand, Australia, and the United States, as well as international organizations such as the World Health Organization, the Red Cross said in a statement. The Red Cross also said it “recorded more than 200 physical incidents of violence against health workers and facilities linked to Covid-19 across more than 13 countries since the beginning of the pandemic.”

The HHS saw its own attack in March of this year, according to Bloomberg.

Health care systems have historically been easy targets for hackers. According to Verizon’s most recent Data Breach Investigation Report, the health care industry reported the highest number of actual breaches in 2019: A total of 521, up from 304 in 2018.

There’s always a large amount of high-value data like credit card and social security numbers, birthdates, and addresses inside hospitals’ vulnerable systems. Historically, hospitals have not operated with a high degree of cybersecurity or security awareness training, a spokesperson for Infosec told Digital Trends. In general, hospitals and other medical institutions, like research firms, are considered very soft targets due to their lack of security, said Chris Kennedy, chief information security office of AttackIQ, a cybersecurity firm.

“You’ve got these legacy operating systems that are often very antiquated and internet capable, and that places them at a high risk of exploitation,” Kennedy told Digital Trends. “It’s a big deal to upgrade them, so they become the soft underbelly of an organization that gets attacked.”

In the past, hospitals have also paid out ransoms to get back crucial medical information that hackers have stolen.

“Think about the rules of war. There are bounds defined by the Geneva Convention that define the rules of war,” said Kennedy. “That doesn’t exist in cyberspace. Here we are in middle of global pandemic, it’s safe to assure there are state sponsored actors and terrorists thinking about ways they can induced further terror, as a way to capitalize on this opportunity.”

“We know cybercriminals will always try to profit in times of anxiety and fear — when people are most vulnerable,” the Infosec spokesperson said. “Cybercrime will surely have a banner year in 2020.”

Maya Shwayder
I'm a multimedia journalist currently based in New England. I previously worked for DW News/Deutsche Welle as an anchor and…
The Windows 11 24H2 update is causing even more problems
Windows 11 logo on a laptop.

The Windows 11 24H2 update had already been giving users a real headache with problems such as bugs for visual layouts and flaws for certain wallpaper apps. And now, as Microsoft confirms in a support document, some people without administrative privileges can't change the time zone in the Date & Time view, among myriad other issues related to the important Windows 11 update.

A Feedback Hub post also reports a time issue after exiting Sleep Mode, specifically after about one out of every five overnight sleep cycles. There is also a report that the time is not syncing correctly following daylight saving time. Put differently, the update doesn't break the time zone, but only affects the toggle or makes it very difficult to modify it.

Read more
Nvidia’s RTX 5070 Ti may trail behind the RTX 4080
Power adapter on the RTX 4070 Ti Super graphics card.

As we inch closer to the launch of Nvidia's RTX 50-series, new leaks keep cropping up daily. Today, one of the most prolific leakers in the PC hardware space shared a glimpse of the specs for Nvidia's upcoming RTX 5070 Ti. Although it's not the full spec sheet, one specification in particular tells us that we may be dealing with a GPU similar to the RTX 4080, which is still one of Nvidia's best graphics cards. But is that good news?

All of this is unconfirmed. Kopite7kimi is one of the accounts that most of us turn to when we want some new scoop on upcoming PC hardware, but this time, the leaker didn't post on X (Twitter), and has instead shared some specs directly with VideoCardz. Let's dig in.

Read more
Some older D-Link routers are vulnerable to attack
D-Link Omna 180 Cam HD

A few legacy D-Link routers can be vulnerable to Remote Code Execution (RCE) attacks since the company refuses to send any updates to patch them up, claiming they have reached end-of-life, as recently posted on its announcement page.

The vulnerability is a serious issue since it allows hackers to take control from anywhere in the world and use a stack buffer overflow. This attack sends more data than the buffer size can handle, potentially corrupting critical information like the return address. Thus, hackers can take control of your PC. However, the company did not detail how the threat works, possibly not informing the hackers too much about the issue.

Read more