While the coronavirus is rapidly spreading there is a lot of people abuse this kind of situation an unknown group of hackers exploit the data records of the hospital and they use bitcoin as the payment to the transaction. A Hollywood-based medical center pays for over 40 BTC over $17k dollars for the recovery of their data.
Source:
This kind of scenario is not new because from the previous year of 2018 there is news about the Hancock Regional Hospital data exploit again. The Hospital Administrator Steve Long pay for over $55,000 of this cyber attack so why did they still pay this kind of data breach? Because all of the details of the patience and the workers in the hospital record is important.
So why the health information record is important than your personal identifiable information?In the black market the health information is more valuable than your personal information only because in personal infomation it is just only consist of your
names, email address and password, credit card numbers or Social Security number
but in health informatuion it is consist of
including medical records. Health insurance ID numbers may also be tied to driver’s license numbers or financial information
. It is more risk if the hackers have this kind of information because they can now make easy access to your connected records. Also they know now the information about your health like what is food makes trigger your allergy and can be possible cause of death. There are a lot of cases happen like this
L.A. hospital pays $17,000 in bitcoin ransom to get back medical records and this kind of crime can continuously happen for over the years.
Why this happen?Base on the Chubb the 58 percent of the reason why this happens is because of the human errors and to the employees does not aware of the things they are doing. Some of the reason why is clicking of links and emails came from unknown sources. Also, they included the installing of software that consist of malware, downloading files, and getting cracked documents.
To make their systems better and to be secured here are the things they can do base on Chubb.
1.Set up multifactor authentication - make a lot of verifications, passwords and be randomly generated.
2. Practice vulnerability management - Always make sure that the system are always safe in the risk.
3. Vet your vendors - Always monitor who can access the system so we can easily identify who is the responsible for the problem and to make it immediately report.
4. Install AI-enabled software that can work offline - Even the system is offline still we need to make a lot of updates
5. Enable some level of system logging - Don't make an easy or general logging in the system make it more difficult and a lot of verifications.
Source