The FBI, Cybersecurity and Infrastructure Security Agency, Australian Cyber Security Centre, and United Kingdom鈥檚 National Cyber Security Centre today released an advisory highlighting ongoing malicious cyber activity by Iranian government-sponsored actors targeting U.S. critical infrastructure sectors, including health care. According to the advisory, the actors are focused on exploiting certain Fortinet and Microsoft Exchange vulnerabilities to access systems for follow-on operations such as data exfiltration or encryption, ransomware and extortion. The advisory describes observed tactics, indicators of compromise and recommended actions to reduce the risk of compromise. 

In other cyber news, the House Committee on Oversight and Reform yesterday held a  on strategies to address ransomware. Cybersecurity and Infrastructure Security Agency Executive Director Brandon Wales said countering risks to hospitals would be a 鈥渃onstant鈥 focus for the agency in the years ahead. 

鈥淭here鈥檚 a lot more we need to do to make sure that hospitals are as protected as they need given the potential for disruptions there to have really significant consequences on both the communities as well as the patients," he told the committee.

John Riggi, AHA鈥檚 senior advisor for cybersecurity and risk, said, 鈥淲e are pleased to see Executive Director Wales acknowledge that more can and must be done by the government to defend hospitals from foreign-based ransomware attacks. We have seen, almost weekly, how these attacks disrupt patient care across entire communities and threaten patient safety. As I stated in testimony before the Senate Homeland Security Committee last December, a ransomware attack on a hospital crosses the line from an economic crime to a threat to life crime, and we need the entire government to respond as such to aid the victims and pursue and disrupt the offenders overseas.鈥 

For more on this and other cyber and risk issues, contact Riggi at jriggi@aha.org
 

Related News Articles

Headline
The Cybersecurity and Infrastructure Security Agency April 17 released guidance to reduce risks associated with a reported breach of Oracle cloud services.鈥
Chairperson's File
Public
This is an incredibly dynamic and transformative time for health care. One resource I have found incredibly helpful in speaking with many of you and engaging鈥
Headline
The National Counterintelligence and Security Center, the FBI, and the Defense Counterintelligence and Security Center yesterday released guidance on鈥
AHA Cyber Intel
While the rate of cyberattacks on hospitals has risen dramatically, the severity of the impacts has also grown exponentially. Let鈥檚 look at the state of cyber鈥
Headline
The House Energy and Commerce Oversight and Investigations Subcommittee April 1 discussed cybersecurity threats in legacy medical devices during a hearing. The鈥
Headline
The Trump Administration March 28 announced that it renewed for one year the public emergency for ongoing malicious cyber-enabled activities against the U.S.鈥