The FBI today released an alert on the ransomware variant Darkside, which this month infected a critical infrastructure company in the United States. The ransomware-as-a-service variant has affected various sectors since October 2020, including health care.
 
“Today the FBI confirmed that the Darkside ransomware is responsible for the compromise of the Colonial Pipeline networks,” said John Riggi, AHA senior advisor for cybersecurity and risk. “The agency continues to work with the victim and government partners on the investigation. This is one of the most significant cyberattacks on U.S. critical infrastructure. Although the Darkside group claims they will not directly target hospitals, all should be prepared for either intentional targeting by Darkside or the resulting impact and collateral damage from a Darkside ransomware attack on a business associate.”  
 
On Friday, the British National Cyber Security Centre and U.S. Cybersecurity and Infrastructure Security Agency, FBI and National Security Agency released a joint advisory with additional details on the latest cyber tactics associated with the Russian Foreign Intelligence Service, to which recent cyberattacks targeting SolarWinds software and COVID-19 vaccine developers were attributed.
 
For more information on this or other cyber and risk issues, contact Riggi at jriggi@aha.org.
 

Related News Articles

Headline
U.S. hospitals and health systems face growing financial pressure from cyberattacks, credit rating agency Fitch Ratings reported last week.   “Ransomware…
Headline
A federal grand jury has charged four individuals from a China-based group known as APT40 with targeting computer systems in the United States and abroad…
Headline
The White House yesterday announced an interagency task force and other initiatives to protect U.S. organizations from ransomware attacks. The task force…
Headline
Microsoft has released out-of-band security updates to address a remote code execution vulnerability — known as PrintNightmare (CVE-2021-34527) — in the…
Headline
The FBI and Cybersecurity & Infrastructure Security Agency July 4 released guidance to respond to the recent supply-chain ransomware attack leveraging a…
Headline
The Computer Emergency Response Team Coordination Center (CERT/CC), part of the Software Engineering Institute at Carnegie Mellon University, this week…