84 Percent of Healthcare Organizations Detected a Cyberattack in Past Year

Healthcare facilities remain a target among cyber criminals.

By Jeff Wardon, Jr., Assistant Editor


Netwrix released a report revealing that 84 percent of organizations in the healthcare sector detected a cyberattack in the past year.  

Phishing was the top on-premises threat, while account compromise (74 percent) led to cloud-based attacks, according to Netwrix’s report.  

Cloudflare recommends these tips to identify a potential phishing attempt: 

  • The sender’s email address isn’t associated with a legitimate domain name, meaning the domain should match up to the name organization the email says it comes from. 
  • A generic greeting is used in place of a name, including terms such as “customer,” “account holder,” or “dear.” 
  • There is a time limit or unrealistic sense of urgency. 
  • The body message is full of syntactical errors. 

Sixty-nine percent of healthcare organizations reported financial damage from attacks, higher than the 60 percent seen across other industries. According to the report, 28 percent of healthcare facilities were out a maximum of $10,000 due to the attacks.  

Related: Protecting Patient Data: Strategies and Tactics

In addition, healthcare organizations faced severe fallout, with 21 percent seeing leadership changes and 19 percent facing lawsuits. As previously reported by Healthcare Facilities Today, PIH Health is being sued for not keeping patients’ confidential information safe from hackers after a December 2024 ransomware attack.  

Even patient care can be disrupted in the wake of a cyberattack, making access to care, quality of care and its continuity take a hit. Healthcare Facilities Today previously reported on a ransomware attack UMC Health System experienced which caused an IT outage, resulting in systems being taken offline and patients being diverted for care. Similarly, HealthAlliance Hospital and Margaretville Hospital had to temporarily divert ambulances to other nearby facilities due to a cyberattack they experienced in October 2023. 

The fallout of cyberattacks is costly for healthcare facilities, making cybersecurity pertinent to keeping operations running smoothly and protecting sensitive data.   

Jeff Wardon, Jr., is the assistant editor for the facilities market. 



January 24, 2025


Topic Area: Information Technology , Security


Recent Posts

ISSA Introduces Healthcare Platform to Advance Safer, Cleaner Patient Environments

This new resource integrates training, research and cross-sector collaboration to raise care standards and improve patient outcomes.


Third-Party Tracking Settlement is a Compliance Wake-Up Call for Healthcare Facilities Managers

Mount Sinai Health System agrees to a $5.3 million settlement to resolve claims it improperly shared patient data with Facebook through tracking tools.


ECU Health Behavioral Health Hospital Hosts Ribbon-Cutting Ceremony for New Facility

The new facility features 144 beds and a healing environment for behavioral health patients.


Aspire Rural Health System Reports Data Security Incident

Upon detecting the unauthorized activity, Aspire immediately worked to contain the incident and launched a thorough investigation.


Fatal Flaws: Strategies for Active Attackers

Anything that goes wrong with the response is the liability exposure of the organization — not the employee and not the police.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

 
 
 
 

Healthcare Facilities Today membership includes free email newsletters from our facility-industry brands.

Facebook   Twitter   LinkedIn   Posts

Copyright © 2023 TradePress. All rights reserved.