nursing home

More Than 100 Nursing Homes Cut Off From Health Data, Payroll Due to Ransomware Attack

A cyber attack on an IT services provider has had major consequences for nursing homes, some of which may have to close down if they do not gain access to crucial patient data.

More than 100 nursing homes across the country have been affected by a ransomware attack on a technology services provider, the company announced on Nov. 18.

Hackers demanded $14 million from Virtual Care Provider, who discovered the attack on Nov. 17. In a letter to clients, the company said that about 20 percent of its services were affected by the virus and that 100 of its servers would need to be rebuilt.

The Milwaukee-based Virtual Care Provider, which offers internet security and data storage capabilities to nursing homes and acute-care providers, could not afford to pay the ransom or gain access to its hacked data, leading to the destruction of the stolen information.

Several nursing homes have been unable to access patient records, use their internet services, pay staff or order medications for their patients, The Milwaukee Journal Sentinel reported last week. In an interview with cybersecurity blog KrebsOnSecurity, Virtual Care CEO and owner Karen Christianson said that some facilities are in danger of having to close down because they have little access to core services and data.

“We’ve got some facilities where the nurses can’t get the drugs updated and the order put in so the drugs can arrive on time,” Christianson said. “In another case, we have this one small assisted living place that is just a single unit that connects to billing. And if they don’t get their billing into Medicaid by December 5, they close their doors. Seniors that don’t have family to go to are then done. We have a lot of [clients] right now who are like, ‘Just give me my data,’ but we can’t.”

Read More: Managed Service Providers Are New Frontier of Ransomware Attacks

She said the company is focused on handling life-threatening situations first and gaining access to electronic medical records that were backed up on other servers.

A security firm in Milwaukee, Hold Security, was able to determine that a gang of Russian hackers were behind the attack. The group was able to infect computers at Virtual Care over the course of 14 months through phishing attacks in the form of email attachments containing viruses. The final attack lasted for three days.

"It's a catastrophic event," Alex Holden, the founder of Hold Security, told the Journal Sentinel. "At the end of the day, they basically destroyed all data available to [Virtual Care].”

The incident is indicative of a growing pattern among ransomware hackers, who are increasingly targeting managed service providers that offer IT services to small businesses. This tactic allows the hackers to paralyze several businesses and local governments at once and improve their chances of receiving the ransom payment as large numbers of clients panic about lost data.

About the Author

Haley Samsel is an Associate Content Editor for the Infrastructure Solutions Group at 1105 Media.

Featured

  • Maximizing Your Security Budget This Year

    Perimeter Security Standards for Multi-Site Businesses

    When you run or own a business that has multiple locations, it is important to set clear perimeter security standards. By doing this, it allows you to assess and mitigate any potential threats or risks at each site or location efficiently and effectively. Read Now

  • Getting in Someone’s Face

    There was a time, not so long ago, when the tradeshow industry must have thought COVID-19 might wipe out face-to-face meetings. It sure seemed that way about three years ago. Read Now

    • Industry Events
    • ISC West
  • Live From ISC West 2024: Post-Show Recap

    ISC West 2024 is complete. And from start to finish, the entire conference was a huge success with almost 30,000 people in attendance. Read Now

    • Industry Events
    • ISC West
  • ISC West 2024 is a Rousing Success

    The 2024 ISC West security tradeshow marked a pivotal moment in the industry, showcasing cutting-edge technology and innovative solutions to address evolving security challenges. Exhibitors left the event with a profound sense of satisfaction, as they witnessed a high level of engagement from attendees and forged valuable connections with potential clients and partners. Read Now

    • Industry Events
    • ISC West

Featured Cybersecurity

Webinars

New Products

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols. 3

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance. 3