Cody Sarhan, Communications Specialist

It’s a busy day, patients are filling beds faster than you can overturn them. With a coffee in one hand and a computer mouse in the other, you find a brief moment to sit down and check your emails. You’re flustered, in a hurry, and don’t take the extra second to double-check who sent that last email. You open it, click a link, or download a simple attachment, and don’t think twice.

You’ve been hacked.

Twenty minutes later, you realize what happened when the computer locks up and you can no longer access the network. A hacker has stolen your network login information, and now has access to the entire hospital system, full of patients’ private and sensitive information.

“The biggest risk sector is employees. If you don’t have the defenses or the user education and awareness, then it’s a super easy way to get into a system.”Chris Callahan, chief of cybersecurity for the Northwest region of the federal Cybersecurity and Infrastructure Security Agency, or CISA

This sounds terrifying, but it happens. And it happens all too often, as hospitals and other clinics are some of the most lucrative and profitable industries for bad actors to breach. As such, they’ve become a top target, according to federal and local cybersecurity experts.

Why Heathcare Is So Vulnerable

Healthcare institutions are goldmines of personal information, including Social Security numbers, health histories, and financial data. This makes them prime targets for cybercriminals. Recent reports indicate a significant rise in incidents where patient information is held hostage unless hefty ransoms are paid. In fact, the healthcare sector has become more targeted by ransomware attacks than any other industry.

“They’re basically a one-stop shop for an adversary,” said Callahan. “Once a hacker obtains someone’s personal information, they’ll often try to use it as leverage to extort an organization or victim for money,” he adds. “If that fails, they’ll try to sell it to other organized crime groups that generally have one objective — to make as much money on your information as fast as possible.”

Recent Incidents & Responses

Several high-profile breaches have underscored the urgency of this issue:

  • A major hospital in California experienced a breach that exposed sensitive data of over 500,000 patients, showcasing the dire consequences of inadequate cybersecurity measures.
  • Another incident at a health clinic in Florida saw former patients receiving ransom demands from a cybercriminal, requesting money to prevent the release of their personal information following a breach of the clinic’s server.

These incidents not only compromise patient trust but also highlight the acute need for robust cybersecurity protocols. In response, many healthcare facilities have begun overhauling their cybersecurity measures, increasing their network defense budgets and outsourcing to cybersecurity experts, such as Xobee Networks. The benefit of partnering with specialists like Xobee, is that hospitals can focus on their patients while the tech experts focus on their network.

Initiatives include frequent cybersecurity audits, enhanced staff training on identifying and responding to phishing attempts, and upgraded software to thwart malware attacks.

