Rantburg

Today's Front Page   View All of Thu 05/02/2024 View Wed 05/01/2024 View Tue 04/30/2024 View Mon 04/29/2024 View Sun 04/28/2024 View Sat 04/27/2024 View Fri 04/26/2024
2021-10-19 Israel-Palestine-Jordan
Top cyber official: Hospital attack ‘purely financial,’ likely by Chinese group
[IsraelTimes] Warning of ’ongoing battle’ with hackers, Health Ministry cybersecurity chief Reuven Eliyahu says Israeli health sector is targeted ’tens of thousands of times a month’.

Health Ministry cybersecurity chief Reuven Eliyahu said Monday morning that last week’s massive ransomware attack on Hillel Yaffe Hospital in Hadera was likely carried out by Chinese hackers whose motives were "purely financial."

"This is probably a Chinese hacker group that broke away from another group and started working in August," Eliyahu said in an interview on Army Radio. "The motive for the attack was purely financial."

Continued from Page 3



A ransomware attack involves breaking into an entity’s networks to encrypt its data, then demanding a ransom, typically paid via cryptocurrency, to unlock it. As a government hospital, Hillel Yaffe was barred from paying any ransom, according to Channel 12 news.

"We are investigating the incident and continue to invest funds to prevent such cases from recurring," Eliyahu said.

With the Health Ministry still working to restore Hillel Yaffe’s systems, Eliyahu said that lessons learned from the cyberattack would soon be passed on to other Israeli hospitals, but that the battle against hackers was far from over.

"In the cyber world, the struggle is like a marathon; it is an ongoing war. This is World War III. It is a huge battlefield of billions of warriors," he said, adding that "the health sector in Israel is attacked tens of thousands of times a month."

The Kan public broadcaster reported Sunday that it could take "days or weeks" to recover the hospital’s systems, while the National Cyber Directorate and Health Ministry said in a joint statement that they were still working to restore Hillel Yaffe’s systems "gradually and securely, as soon as possible."

Some non-urgent procedures were canceled as a result of the attack, but most of the hospital’s work is continuing, using alternative IT systems and pen and paper.

Sunday’s joint statement said the ministry and directorate had thwarted a wave of attempted cyberattacks targeting Israeli hospitals and health centers over the weekend.

"Early assessments and a quick response from the directorate and staff on the ground halted the attempts and no damage was caused," the joint statement said.

The directorate said nine hospitals and health institutions were targeted. It was not immediately clear what type of cyberattacks were attempted, or who may have been behind them.

Last week, the National Cyber Directorate issued a general warning to Israeli businesses to be aware of potential cyberattacks, as the country faced an uptick in hacking attempts.

Data released Thursday suggested that Israel was the country most affected by ransomware since 2020.

Last week, Microsoft said that it had identified a group of Iranian hackers using the tech giant’s products to target Israeli and American defense technology companies as well as firms running maritime shipping in the Middle East.

Separately, Google warned of a surge in state-backed hackers, with a report focusing on the "notable campaigns" of a group linked to Iran’s Revolutionary Guard Corps.

Numerous suspected Iranian cyberattacks on Israel were reported in recent years, including one that targeted its water infrastructure in 2020. Israel and Iran
...a theocratic Shiite state divided among the Medes, the Persians, and the (Arab) Elamites. Formerly a fairly civilized nation ruled by a Shah, it became a victim of Islamic revolution in 1979. The nation is today noted for spontaneously taking over other countries' embassies, maintaining whorehouses run by clergymen, involvement in international drug trafficking, and financing sock puppet militias to extend the regime's influence. The word Iran is a cognate form of Aryan. The abbreviation IRGC is the same idea as Stürmabteilung (or SA). The term Supreme Guide is a the modern version form of either Duce or Führer or maybe both. They hate Jews Zionists Jews. Their economy is based on the production of oil and vitriol...
have been engaged in a years-long shadow war, with Israel allegedly directing most of its efforts — including multiple suspected cyberattacks — at sabotaging the Islamic Theocratic Republic’s nuclear program.

However,
a good lie finds more believers than a bad truth...
Kan reported Sunday that Sherlocks believe that the hospital attacks were criminal and not security-related, an assessment made explicit by the Health Ministry’s Eliyahu on Monday.

In July, cybersecurity firm Check Point reported that Israeli institutions are targeted by about twice as many cyberattacks as the average in other countries around the world, particularly the country’s health sector, which experiences an average of 1,443 attacks a week.

The most targeted sectors around the world, including in Israel, are education and research, followed by government and security organizations, and then health institutions, Check Point said. The report found that, on average, one in every 60 Israeli organizations or firms is targeted every week with ransomware attacks, an increase of 30% over the rate in 2020.
Posted by trailing wife 2021-10-19 00:49|| || Front Page|| [24 views ]  Top
 File under: Commies 

#1 You can tell that they think it was from China, because nothing blew up in Iran. Or something.
Posted by ed in texas 2021-10-19 10:50||   2021-10-19 10:50|| Front Page Top

#2 motives were "purely financial."

Nonsense.
Hospital IT systems are notoriously poorly managed and secured. They are often used as a gateway to hospital, government and other networks by intruders. By encrypting content [like access log files] victims must pay to find and block the intrusion.
Posted by Skidmark 2021-10-19 13:09||   2021-10-19 13:09|| Front Page Top

#3 Yeah, no one has figured out to backup daily, weekly and monthly. Laziness can be expensive.
Posted by Procopius2k 2021-10-19 14:03||   2021-10-19 14:03|| Front Page Top

#4 Come on, man! We do regular backups. Everyone knows it is good IT practice. However, we never actually ran the drill of restoring a backup because who has time for that stuff? There's work to be done! So we never realized the dailies were corrupt and totally unusable until suddenly we needed them.

I've seen this happen at 2 different companies. I'm guessing they are not the only ones. But don't worry! They'll fix it later when they have more time.
Posted by SteveS 2021-10-19 14:49||   2021-10-19 14:49|| Front Page Top

05:43 NN2N1
05:41 Skidmark
05:40 NN2N1
05:39 Besoeker
05:35 Skidmark
05:31 Skidmark
05:26 Procopius2k
05:26 NN2N1
05:20 Besoeker
05:11 Grom the Reflective
05:10 Besoeker
05:10 Grom the Reflective
04:59 Grom the Reflective
04:57 Grom the Reflective
04:57 Grom the Reflective
04:54 Besoeker
04:34 Besoeker
04:30 Grom the Reflective
04:06 Grom the Reflective
04:05 Grom the Reflective
02:52 Grom the Reflective
02:31 DarthVader
02:26 DarthVader
02:19 Grom the Reflective









Paypal:
Google
Search WWW Search rantburg.com