The Times Australia
The Times World News

.
Times Media

.

A cancer centre is the latest victim of cyber attacks. Why health data hacks keep happening

  • Written by Mohiuddin Ahmed, Senior Lecturer of Computing and Security, Edith Cowan University
A cancer centre is the latest victim of cyber attacks. Why health data hacks keep happening

It seems hardly a day goes by without another report of a cyber crime incident. With Medibank still fresh in our minds, the latest attack[1] is on a Sydney-based cancer treatment facility, Crown Princess Mary Cancer Centre in Westmead Hospital.

The cyber criminal group Medusa claims to have stolen thousands of files and is holding them to ransom.

Screenshot of Medusa Blog from Dark Web Site
Screenshot of Medusa Blog from Dark Web Site. Author provided

In what has become a common practice, the criminal gang seems to be using double extortion. In such scenarios, criminals typically demand a fee to “release” the data back to the organisation – often with a “sample” made available to verify their claims.

The gangs then double-down with threats to publicise the data via their websites if payment isn’t made – in this case, a deadline of seven days.

Medusa is offering a range of options to delay the public release of data by 24 hours (US$10,000), to download and/or delete the data from the gang for US$100,000.

It’s currently unclear what will happen on Friday morning if the ransom is not paid. However, the Medusa Blog offers free access to data stolen from previous victims who did not pay the ransom by the deadline.

Victims data published on Medusa Blog Victims data published on Medusa Blog. Author provided

According to CyberCX[2], Medusa is the “second-most active cyber extortion group in the Pacific”. Medusa has been trying to compromise[3] organisations in Australia and New Zealand since the beginning of 2023.

Read more: Why are there so many data breaches? A growing industry of criminals is brokering in stolen data[4]

Why target health services?

Any cyber attacks on the health sector are dangerous. While some cyber criminals have previously avoided schools[5] and health-care organisations[6], it seems these are now fair game.

Knowing the services and data held by these organisations are critical, it’s not surprising to see so many ransomware attacks are launched against critical health-care infrastructure.

Some notable incidents targeting the Australian health systems have included Medibank[7], Melbourne Heart Group[8] and Eastern Health[9] which operates four hospitals in Melbourne’s east – an attack which resulted in elective surgeries needing to be postponed.

According to tech giant Microsoft[10], the health-care sector (and aligned industries) is one of the top targets for cyber criminals.

Ransomware incident and recovery engagements by industry. Microsoft Digital Defense Report 2022

Read more: Australian hospitals are under constant cyber attack. The consequences could be deadly[11]

What are the impacts?

The health sector deals with our most private data – none of us want this data in criminal hands. Apart from the privacy issues, the inability to continue regular activities in any health-care facility poses life-threatening risks.

A recent study[12] showed from 2016-2021, US health-care providers experienced 374 ransomware attacks that exposed the private health information of nearly 42 million patients.

Nearly half of these ransomware attacks disrupted the health-care services, with impacts including electronic system downtime, cancellations of scheduled care, and ambulance diversions.

Why do they keep happening?

Technical advances in the health industries have undoubtedly improved treatment and overall patient care. While this growth in technology is a positive for health care, it exposes health systems to cyber criminals.

With each passing year there is increased connectivity between clinical systems and medical devices. The health-care sector needs to be more staffed[13] and heavily reliant on internet-connected systems[14] also known as digital health. This inter-connectivity makes health systems more complex and harder to secure[15].

With the exception of state-sponsored groups, cyber criminals are primarily motivated by financial gain. Health care is undoubtedly one of the most promising targets as, if compromised, the organisations are more likely to pay the ransom – ultimately, because lives are at stake.

Cyber criminals capitalise on this and, even after good governance and enhanced cybersecurity within the sector, these incidents are likely to continue.

Read more: Is Australia a sitting duck for ransomware attacks? Yes, and the danger has been growing for 30 years[16]

Living with cyber criminals around us

So far, reports about the Cancer Centre at Westmead have not indicated that operations have been significantly impacted. This may imply no computing devices have actually been compromised and locked – this could be seen as a positive.

However, those who have examined the samples of data published on the Medusa Blog have suggested it seems genuine[17].

As Robert Mueller, former Director of the FBI, famously said:

There are only two types of companies: those that have been hacked and those that will be hacked.

Cyber crime has become a global industry with estimates predicting the impact at more than US$8 trillion in 2023[18]. With such potentially lucrative benefits, we have to accept we will be sharing cyberspace with criminals for the foreseeable future.

There are, of course, actions that can improve our cybersecurity preparedness, regardless of the sector. While nothing will completely eliminate the risk, making ourselves a less attractive target helps to reduce the likelihood of being a victim. So it’s important to:

  • protect your systems: apply patches to all devices (including mobile phones); educate users to segregate personal and business activities; use strong and unique passwords for all systems/services
  • include all systems: don’t forget the internet of things and operational technology (all the devices and software we use that connect to the internet); check default settings (changing any default passwords); and plan the disposal of old systems
  • protect your data: data collected from all sources need to be kept in appropriate locations; think about how long you will keep data; and ensure data is protected from creation to destruction.
  • protect your people: educate all staff on basic cyber hygiene; vet new staff; and think about your off-boarding practices
  • seek advice: when things go wrong bring in the experts and liaise with law enforcement or other government agencies as appropriate.

And, finally, do not pay the ransom – it may be a difficult decision, but it only encourages the criminals behind the ransomware campaigns to keep going.

Read more: Medibank won't pay hackers ransom. Is it the right choice?[19]

References

  1. ^ latest attack (www.abc.net.au)
  2. ^ CyberCX (www.cybersecurityconnect.com.au)
  3. ^ trying to compromise (www.bitdefender.com)
  4. ^ Why are there so many data breaches? A growing industry of criminals is brokering in stolen data (theconversation.com)
  5. ^ avoided schools (www.bitdefender.com)
  6. ^ health-care organisations (www.bleepingcomputer.com)
  7. ^ Medibank (www.sbs.com.au)
  8. ^ Melbourne Heart Group (www.abc.net.au)
  9. ^ Eastern Health (ia.acs.org.au)
  10. ^ Microsoft (www.microsoft.com)
  11. ^ Australian hospitals are under constant cyber attack. The consequences could be deadly (theconversation.com)
  12. ^ recent study (jamanetwork.com)
  13. ^ more staffed (www.forbes.com)
  14. ^ internet-connected systems (www.sciencedirect.com)
  15. ^ more complex and harder to secure (www.hackread.com)
  16. ^ Is Australia a sitting duck for ransomware attacks? Yes, and the danger has been growing for 30 years (theconversation.com)
  17. ^ suggested it seems genuine (www.databreaches.net)
  18. ^ more than US$8 trillion in 2023 (cybersecurityventures.com)
  19. ^ Medibank won't pay hackers ransom. Is it the right choice? (theconversation.com)

Read more https://theconversation.com/a-cancer-centre-is-the-latest-victim-of-cyber-attacks-why-health-data-hacks-keep-happening-205131

The Times Features

Game of Influence: How Cricket is Losing Its Global Credibility

be losing its credibility on the global stage. As other sports continue to capture global audiences and inspire unity, cricket finds itself increasingly embroiled in political ...

Amazon Australia and DoorDash announce two-year DashPass offer only for Prime members

New and existing Prime members in Australia can enjoy a two-year membership to DashPass for free, and gain access to AU$0 delivery fees on eligible DoorDash orders New offer co...

6 things to do if your child’s weight is beyond the ideal range – and 1 thing to avoid

One of the more significant challenges we face as parents is making sure our kids are growing at a healthy rate. To manage this, we take them for regular check-ups with our GP...

Joykids Australia Presents the Joykids Family Rave: A Weekend Adventure Like No Other

Get ready to kick off the first day of summer and the festive season with an unforgettable family adventure! Joykids Australia is excited to announce the Joykids Family Rave—an...

New study suggests weight loss drugs like Ozempic could help with knee pain. Here’s why there may be a link

The drug semaglutide, commonly known by the brand names Ozempic or Wegovy, was originally developed[1] to help people with type 2 diabetes manage their blood sugar levels. How...

Maintaining Your Pool After a Marble Interior Upgrade

After upgrading your pool with a marble interior, it’s crucial to understand that maintenance is key to preserving its elegance and longevity. You’ll want to regularly skim for d...

Times Magazine

How to Օvercome Լaziness

Everyone has moments of laziness from time to time, when all you need to do is sit or lie down and do nothing. How to overcome this laziness or stop procrastinating. Let's share some useful tips. From time to time, you can afford to be a little...

Beatbot - The ultimate pool cleaning solution

Pool maintenance is somewhere near the bottom of my priority list…until all of a sudden, spring arrives and the endless peppering from kids that want a non-stop pool-fest becomes part of the every day. It’s great fun when the pool is clean, clear...

Tools Necessary for Successful Connector for Wires Installation

For electrical professionals and DIYers alike, having the right tools and understanding the proper techniques for successfully installing a connector for wires is essential. Without the proper tools and understanding of the task at hand, a succes...

The Ultimate Guide for Moving for Seniors

Moving is a major activity, regardless of your age. There are a lot of things to manage and schedule, and the older you become, the more you have to think about. You're not alone if you've decided it's time to relocate but are feeling overwhelmed...

Evaluating the Benefits of Pet Insurance: Is It Really Worth It?

Owning a pet can be one of the most rewarding and fulfilling experiences, but it can also come with significant financial costs. Veterinary bills, prescription medications, and other pet-related expenses can quickly add up, and if you're not prepar...

The Benefits of Collaborative Family Law for Amicable Resolutions

Looking to resolve their disputes outside of court often find themselves exploring various options to reach a peaceful resolution. Whether it involves co-parenting arrangements, financial settlements, or future planning, there are methods designe...