Healthcare system's ransomware attack allowed by known security flaw

Last month’s attack on MedStar Health’s computer systems came through a well-known security vulnerability in an application server


The recent ransomware attack on MedStar Health’s computer systems came through from a well-known security vulnerability in an application server, according to an article on the Healthcare Finance website.

The  attack occurred after hackers discovered that MedStar uses JBoss, an application server with a recognized design flaw. The hackers used a virus-like software to scan the Internet for vulnerable JBoss servers.

Security researchers found that the JBoss application server was routinely misconfigured to allow unauthorized outside users to gain control.

The US government, Red Hat Inc., and other groups released warnings about the security issue in February 2007 and March 2010. MedStar could have fixed the vulnerability by installing a patch for the system or manually deleting two lines of software code. 

Read the article.

 

 



April 19, 2016


Topic Area: Safety


Recent Posts

Regulations Take the Lead in Healthcare Restroom Design

Infection-control guidance and water management standards drive earlier planning, smarter fixtures and more resilient restroom environments.


AHN Allegheny Valley Hospital Opens Expanded Inpatient Rehabilitation Unit

Construction began in July 2025 and included 12 new inpatient rehabilitation beds, bringing the unit’s total to 29.


HSHS and Lifepoint Rehabilitation Partner on New Inpatient Rehab Hospital in Green Bay

The 40-bed hospital will be named the Hospital Sisters Health System | Rehabilitation Hospital.


Turning Facility Data Into ROI: Where Healthcare Leaders Should Start

Better data, smarter tools and small facility upgrades can drive measurable returns, guide ambulatory strategy and improve patient experience.


Sutter Health Breaks Ground on Advanced Cancer Center and Care Complex

The new center, located on Sutter’s Memorial Medical Center campus, will feature four stories and 165,000 square feet of modernized, patient-centered space.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.