Ransomware gangs are exploiting 3 vulnerabilities to attack healthcare orgs, feds warn

Two ransomware groups known for targeting the healthcare sector, Clop and LockBit, have been using vulnerabilities to conduct new attacks, the Health Sector Cybersecurity and Coordination Center warned in an April 28 threat brief. 

Advertisement

Five things to know:

  1. Clop ransomware group has been exploiting the GoAnywhere MFT vulnerability and has attacked and stolen data from around 130 organizations.
  2. Clop and LockBit have also been exploiting CVE-2023-27350 and CVE-2023-27351 vulnerabilities. These vulnerabilities are used by print management software PaperCut. 
  3. Franklin, Tenn.-based Community Health Systems was affected by an incident involving GoAnywhere from third-party vendor Fortra. About 1 million of its patients’ information has been breached due to the attack on the vulnerability.
  4. An increase in ransomware attacks in March was attributed to the exploitation of the GoAnywhere vulnerability.
  5. HHS is recommending all organizations to patch the vulnerabilities with affected servers.

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

The hidden cost of lost clinical time and how leading health systems are responding

Friday, August 7
12:00 PM - 1:00 PM CDT

Presenters: Kassaundra McKnight-Young, Zebra TechnologiesGregory Carras, Zebra TechnologiesJennifer Gene, Levata

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.