Cyberattacks Like The One On DCH Are Increasingly Common
When cyber criminals attacked DCH Health System last week, they encrypted computer files and restricted access to medical systems. Brad Fisher, DCH spokesperson, says it had a big impact.
“When those things are not available, and the system is built on having those to deliver the care, it’s really difficult,” Fisher says.
In response to the attack, DCH stopped accepting all but the most critical new patients at its three hospitals located in Tuscaloosa, Northport and Fayette, and employees reverted to using paper charts and records.
After paying the hackers to obtain a decryption key over the weekend, hospital officials are now working to fully restore operations. Fisher says the attack was an eye opener.
“If you’re in a hospital, be afraid. Be very afraid,” Fisher says. “It’s not good. It’s not a good thing at all.”
Ransomware attacks are the most significant cyber threat to hospitals across the country, according to John Riggi, a 28-year veteran of the FBI and now senior advisor for cybersecurity and risk at the American Hospital Association.
“Ransomware has a direct impact to interrupt patient care delivery operations and potentially patient safety,” Riggi says.
He says nowadays, because hospitals are increasingly wireless, a ransomware attack can shut down everything from CPAP machines and blood pressure monitors to the entire emergency room.
In addition to ransomware, hospitals also face potential cyber threats that target sensitive patient information and medical data. Last week, UAB Hospital announced that protected health information for about 20,000 patients was exposed and possibly viewed by hackers, after a phishing attack in August. Officials say criminals were trying to re-direct employee payroll deposits.
Cybersecurity expert John Riggi says a hospital’s best defense is prevention. Since ransomware and other malware typically enter a system via an email attachment or a link, employee education is key. He adds that hospitals should keep offline backups and regularly address software vulnerabilities, though that can be a challenge.
“Because hospitals operate 24/7, they can’t shut down overnight to deploy patches in their systems, and the systems are tremendously complex,” Riggi says.
This year, he says, there has been a dramatic increase in targeted cyberattacks on hospitals and other organizations. But at the same time, there is a growing awareness of the issue. Riggi says hospitals across the country now consider it a top risk. It just so happens that October is Cyber Security Awareness Month.
Catholic leaders criticize Trump for posting apparent AI photo of himself as the pope
When asked about the image, Cardinal Timothy Dolan, the archbishop of New York who is friendly with Trump, said "it wasn't good" and that he hoped Trump had nothing to do with it.
Does a president need to uphold the Constitution? Trump says ‘I don’t know’
The president says a third term is "not something I'm looking to do," and the US.. economy is in a "transition period."
Kidnappers in France target cryptocurrency entrepreneurs for ransom
French police say they rescued the father of a wealthy crypto entrepreneur, the second ransom case linked to the crypto world this year.
Houthi missile strike at Israel airport halts flights ahead of key vote on Gaza war
Israel said it would retaliate after four people were injured and flights temporarily suspended.
How this teen fled Russian occupation to become an unassuming hero in Ukraine
An 18-year-old from Russian-occupied Luhansk tells NPR how and why he escaped to Kyiv.
Sunday Puzzle: Two plus five
NPR's Ayesha Rascoe plays the puzzle with Michigan Public listener Michael Feiten of Highland, Mich., and Weekend Edition Puzzlemaster Will Shortz.