medical devices

Healthcare Industry Facing Growing Range of Cyber Threats From Hackers, Foreign Countries

A new report predicts a new frontier of cyber attacks for healthcare organizations, including ransomware, international espionage and the hacking of biomedical devices.

Thanks to the wealth of sensitive data maintained by healthcare organizations, the healthcare industry is facing a wide “range of threat actors and malicious activity” from criminals and even other countries, cybersecurity firm FireEye finds in a report released Wednesday.

“Given the critical role it plays within society and its relationship with our most sensitive information, the risk to this sector is especially consequential,” FireEye writes.

The current threat landscape can be separated into two different categories, the company found: theft of data and “disruptive and destructive threats.” Most hackers targeting the industry are motivated by financial gain, but a relatively smaller threat includes cyber espionage campaigns conducted by international actors, most notably China.

Those actors appear to be driven by an “interest in acquiring medical research and collecting large data sets of information, potentially for the purpose of fostering intelligence operations.” In April, suspected Chinese cyber espionage hackers targeted an American health center that focuses on cancer research, a high priority for a country facing growing cancer and mortality rates.

In addition, healthcare organizations also face the potential consequences of disruptive and destructive threats, which can hurt the ability of healthcare providers to conduct normal operations.

FireEye found that the industry was particularly vulnerable to ransomware attacks, which locks out administrators from their systems until they pay a fine to regain access. Ransomware has recently paralyzed cities like Atlanta and Baltimore, most recently shutting down certain systems in 23 local Texas governments in what the state believes was a coordinated attack.

Perhaps the most concerning finding in the report was FireEye’s prediction that medical devices will become the next target for hackers. The firm found that the use of healthcare-focused IoT devices -- including remote patient monitoring and tracking systems -- “increase the theoretical attack surface” for healthcare providers.

Indeed, FireEye found that several such devices are “insecure by design” in order to provide access to data for providers and physicians. “We suspect that other types of medical devices have similar security shortfalls,” the report reads.

The company predicts that the threat landscape in this area will only grow larger.

“Looking forward, the increasing number of biomedical devices used for critical functions within hospitals and healthcare providers presents a growing security challenge,” the report reads. ‘Furthermore—given their importance and value—a growing willingness by cyber crime, or, in a period of heightened geopolitical tensions, nation state actors—to deploy disruptive and destructive tools may significantly increase the impact from these threats we have observed to date.”

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • Maximizing Your Security Budget This Year

    7 Ways You Can Secure a High-Traffic Commercial Security Gate  

    Your commercial security gate is one of your most powerful tools to keep thieves off your property. Without a security gate, your commercial perimeter security plan is all for nothing. Read Now

  • Digital Access in the Workplace

    It is simple to set up a unified, robust access control solution for one tenant leasing one building. It is even easier if the tenant owns the property. But what is involved when multiple companies lease space in a building? And what about companies that have multiple buildings in the same city or locations across various regions in the country and the world? Read Now

  • Cloud and Hybrid Adoption on the Rise

    The physical security industry is experiencing a time of great transformation. Cloud connectivity is accelerating, and more organizations are choosing to blend on-premises and cloud-based solutions. This transformation is affecting all aspects of security, including access control. In the Genetec annual State of Physical Security Survey, it was access control that topped the list of new technologies end-users planned to focus on in 2024. Read Now

  • Texas City Replaces Locks on Intelligent Traffic Cabinets With More Secure Option

    The Transportation Services and Mobility department for the city of Grand Prairie, Texas recently completed a substantial project to replace the locks on their Intelligent Traffic Cabinets with a better and more secure choice. Turns out what they needed was only a few miles away with ALCEA’s Traffic Cabinet Locking Solution powered by ABLOY technology. Read Now

Featured Cybersecurity

Webinars

New Products

  • EasyGate SPT and SPD

    EasyGate SPT SPD

    Security solutions do not have to be ordinary, let alone unattractive. Having renewed their best-selling speed gates, Cominfo has once again demonstrated their Art of Security philosophy in practice — and confirmed their position as an industry-leading manufacturers of premium speed gates and turnstiles. 3

  • FEP GameChanger

    FEP GameChanger

    Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction. 3

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities 3