Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Rising Healthcare Breaches Driven By Hacking And Unsecured Servers

Rising Healthcare Breaches Driven By Hacking And Unsecured Servers

2020 was a bad year for healthcare organizations in the U.S., which had to deal with a record-high number of cybersecurity incidents on the backdrop of the COVID-19 pandemic.

Hacking and IT incidents affected the industry to a larger extent last year, accounting for more than 67% of all breaches and exposed the personal data of tens of millions of individuals.

Highest breach count

Analyzing data from the U.S. Department of Health and Human Services, threat protection company Bitglass found that the count of healthcare breaches reported in 2020 increased to 599, a jump of more than 50% compared to the previous year (386).

Most of the breaches were caused by hacking and IT incidents, which exposed data from 24.1 million individuals, making them vulnerable to identity theft and phishing attacks.

However, despite the rise in incidents, the total number of affected individuals is slightly lower compared to 2019.

Also Read: Computer Misuse Act Singapore: The Truth And Its Offenses

A breakdown of the breaches per state shows that California had the highest number, 49 incidents, followed by Texas with 43.

New York with 39 breaches, and Florida and Pennsylvania, each with 38 breaches, take the next three spots.

Looking at the states that had the largest count of individuals affected, Michigan ranks first, mostly because of a single incident at the Trinity Health healthcare delivery system, which impacted 3.3 individuals.

According to the Ponemon Institute, breaches affecting healthcare organizations are the most expensive to deal with and have the longest recovery time.

On average, the cost per breached record in 2020 was $499, and recovery took about 236 days. Also on the downside is the fact that healthcare institutions take 96 days to identify a breach, more than any other industry.

Ransomware attacks

While the report from Bitglass does not break down the hacking incidents by their type, ransomware attacks likely account for a significant proportion.

Maze, Ryuk, REvil (Sodinokibi), SunCrypt, Snake, and Clop are just some of the ransomware groups that attacked hospitals and healthcare organizations.

report from Check Point earlier this year named Ryuk and REvil the top threats for the healthcare sector at a global level.

At the end of October 2020, the U.S. Government released a warning about Ryuk ransomware attacks targeting hospitals and healthcare providers. An earlier notification, in April, sounded the alarm about ransomware groups breaching hospitals by exploiting a remote execution vulnerability in Pulse Secure VPN servers.

Also Read: Personal Data Websites: 3 Things That You Must Be Informed

News about ransomware hitting various hospitals in the U.S. trickled all through 2020, most of them towards the end of the year (1, 2, 3, 4, 5), and some organizations ending up paying the hackers hundreds of thousands of U.S. dollars to return to normal activity.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us