Hospitals Continue to be Ransomware Targets as Half Experience Shutdowns in the Last 6 Months

Stu Sjouwerman | Aug 24, 2021

Hospitals Continue to be RansomwareWith financial impacts as high as $46K per hour, shutting down some or all of operations due to a ransomware attack is not a decision taken lightly by hospitals, but may be the only option.

Organizations in Healthcare have been centered on the cybercriminal’s radar since the beginning of the pandemic. The continued increased reliance on hospitals to address those impacted by the virus has made them an obvious choice for those threat actors that are less than scrupulous.

According to new data found in the report Perspectives in Healthcare Security, it’s very evident that hospitals are very much feeling the pain of cyberattacks:

  • 61% of large and 42% of midsize hospitals have experienced shutdowns in the last 6 months, yielding an average of 54%
  • Hospitals experienced an average of 8.5 days of device shutdown time

Some of the reasons in the report paint a picture of a very unprepared security stance:

  • 5% of all hospitals had no protection whatsoever against a list of common vulnerabilities and ransomware variants
  • 15% have no means to identify the number of – let alone being able to manage and secure – devices on their network
  • One-third of hospitals feel they need more cybersecurity staffing

Interesting to note that 51% of large hospitals experienced shutdowns due to “internally-initiated actions” such as a user falling for a phishing attack. The report seems to point out that much of a hospitals IT budget is focused on logging and alerting, rather than impactful parts of a security strategy designed to stop attacks from ever happening – such as Security Awareness Training, which can significantly reduce the attack surface of email-based cyberattack.

Topics: Ransomware

Test Your Network’s Defenses with our Free Ransomware Simulator

When employees bypass guidance and fall for social engineering, your network security is the last line of defense. Run our 100% harmless RanSim tool on Windows 10+ workstations to safely simulate 25 ransomware and cryptomining infection scenarios, pinpoint technical vulnerabilities, and get your results in minutes.

Launch Your Free Ransomware Simulation

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.