Kegtap, Singlemalt, Winekey Malware Serve Up Ransomware to Hospitals

Amid an uptick in attacks on healthcare orgs, malware families, Kegtap, Singlemalt and Winekey are being used to deliver the Ryuk ransomware to already strained systems. Continue reading Kegtap, Singlemalt, Winekey Malware Serve Up Ransomware to Hospitals

Health sector mobilizes defenses following Ryuk ransomware warning

A day after U.S. federal agencies warned of an “imminent” ransomware threat to hospitals, it’s an all-hands-on deck mentality for a health sector already strained by the coronavirus pandemic. Private threat briefings are being held for hospital executives, federal officials are appealing for more data on the cybercriminals and hospitals are hardening their computer networks. The defensive measures follow an advisory Wednesday from the FBI and departments of Homeland Security and Health and Human Services that cybercriminals were deploying Ryuk ransomware to disrupt IT networks and extort hospitals. It was a stark warning, even for a health care sector accustomed to pandemic-era cyberattacks: Medical organizations are being singled out by capable crooks. While the federal agencies did not name victim organizations, the announcement coincided with suspected ransomware attacks this week on hospitals in New York, Oregon and Vermont, and perhaps other states. The American Hospital Association, which includes 5,000 health […]

The post Health sector mobilizes defenses following Ryuk ransomware warning appeared first on CyberScoop.

Continue reading Health sector mobilizes defenses following Ryuk ransomware warning

FBI, DHS, HHS Warn of Imminent, Credible Ransomware Threat Against U.S. Hospitals

On Monday, Oct. 27, KrebsOnSecurity began following up on a tip from a reliable source that an aggressive Russian cybercriminal gang known for deploying ransomware was preparing to disrupt information technology systems at hundreds of hospitals, clinics and medical care facilities across the United States. Today, officials from the FBI and the U.S. Department of Homeland Security hastily assembled a conference call with healthcare industry executives warning about an “imminent cybercrime threat to U.S. hospitals and healthcare providers.” Continue reading FBI, DHS, HHS Warn of Imminent, Credible Ransomware Threat Against U.S. Hospitals

European ransomware group strikes US hospital networks, analysts warn

An Eastern European cybercriminal group has conducted ransomware attacks at multiple U.S. hospitals in recent days in some of the most disruptive cyber-activity in the sector during the coronavirus pandemic, cybersecurity company FireEye said Wednesday. The group, which FireEye calls UNC1878, has been deploying Ryuk ransomware and taking multiple hospital IT networks offline, said Charles Carmakal, senior vice president of Mandiant, FireEye’s incident response arm. “UNC1878 is one of most brazen, heartless and disruptive threat actors I’ve observed over my career,” Carmakal said. The group’s activity “is deliberately targeting and disrupting U.S. hospitals, forcing them to divert patients to other healthcare providers,” he said. The company did not detail any specific attacks, or the timing of the activity it says it observed. The announcement coincides with multiple reported ransomware incidents, including an attack earlier this week on Oregon-based Sky Lakes Medical Center. The medical center carried on with emergency and urgent […]

The post European ransomware group strikes US hospital networks, analysts warn appeared first on CyberScoop.

Continue reading European ransomware group strikes US hospital networks, analysts warn

More Hospitals Hit by Growing Wave of Ransomware Attacks

Hospitals in New York and Oregon were targeted on Tuesday by threat actors who crippled systems and forced ambulances with sick patients to be rerouted, in some cases. Continue reading More Hospitals Hit by Growing Wave of Ransomware Attacks

Leading French IT firm Sopra Steria hit ry Ryuk ransomware

By Waqas
The firm claims that the Ryuk ransomware attack was detected on 20 October, and it may take weeks to restore its systems.
This is a post from HackRead.com Read the original post: Leading French IT firm Sopra Steria hit ry Ryuk ransomware
Continue reading Leading French IT firm Sopra Steria hit ry Ryuk ransomware

Sopra Steria confirms it has been hit by new strain of Ryuk ransomware, will take weeks to return to normal operations

Sopra Steria confirms it has been hit by a new strain of the Ryuk ransomware, and that it will take weeks for its IT network to return to normal operation. Continue reading Sopra Steria confirms it has been hit by new strain of Ryuk ransomware, will take weeks to return to normal operations

Ryuk Ransomware Gang Uses Zerologon Bug for Lightning-Fast Attack

Researchers said the group was able to move from initial phish to full domain-wide encryption in just five hours. Continue reading Ryuk Ransomware Gang Uses Zerologon Bug for Lightning-Fast Attack