What does COVID-19 have in common with the cyberattack in Romania that took place a few days ago? That’s right, both attackers tried to sabotage healthcare facilities! This time, the consequences were not as horrific, but the hackers still managed to cause damage… So it’s time for us to look into it! 

Read More: The Strenght of AI: AstraZeneca’s Step Towards Conquering Cancer

Your Health Records Are Wanted

The attack occurred on the night of February 11-12, 2024, and encrypted databases and files. The Romanian Ministry of Health recognized the seriousness of the situation and is actively working to resolve it.

hodl-post-image
Source: DNSC

The first announcement was about the presence of ransomware in the system. Later, after an on-site visit, the DNSC (National Directorate of Cybersecurity) discovered the following threats: Backmydata ransomware and a virus from the Phobos ransomware family that encrypted data from the servers of several hospitals in Romania that use the HIPOCRATE IT platform. A total of 21 hospitals and 79 other healthcare facilities were affected. 

Read More: Cheat Sheet for a REAL Crypto Criminal: Your Guide to Crypto Crime Terminology

hodl-post-image

Interestingly, none of the reports indicate the name of the hacker group responsible for this attack, but only an email address (this is how blockchain anonymization works). 

The Dumb Bastards

Hackers demanded not for free tests, by the way, as you can imagine. They would like a ransom of 3.5 BTC (about 157,000 EUR).

It all seems horrible… Considering that all these hospitals are disconnected from the Internet and currently have no access to their equipment and data. But 3.5 BTC… This is both a lot and somehow not very much, given the scale of the attack. Maybe someone just needed to pay tuition fees or save for a vacation? The history knew much worse ransomware attacks.

hodl-post-image

No, really! Reportedly they didn’t get even a single prescription. 

Plus all the data is safe and will be swiftly restored, DNSC reports: 

Most of the affected hospitals have backups of data from the affected servers, and the data was saved relatively recently (1-2-3 days ago), except for one, whose data was saved 12 days ago. This can make it easier to restore services and data.

The Best Vaccine In This Case Is Caution!

So if you see something like this on your screen, please remember what Romanian cybersecurity told us about it:

  • Identify the affected systems and immediately isolate them from the rest of the network, as well as from the Internet (yes, the TV series in the background will have to be turned off).
  • Keep a copy of the ransomware message and do not turn off the affected equipment — this will erase the evidence.
  • Immediately notify all employees and inform affected customers and business partners of the incident and its scope (you can even set off the fire alarm).
hodl-post-image
Source: ZDNET

You will definitely get at least some help at this point!

Read More: 

Well, in the modern world, we have to take care not only of good old health but also of cybersecurity. Don’t get sick and be careful, otherwise, everyone can find out about all your sores!

Disclaimer: All materials on this site are for informational purposes only. None of the material should be interpreted as investment advice. Please note that despite the nature of much of the material created and hosted on this website, HODL FM is not a financial reference resource and the opinions of authors and other contributors are their own and should not be taken as financial advice. If you require advice of this sort, HODL FM strongly recommends contacting a qualified industry professional.