The Open Risk Data functionality of the Open Risk Manual is in still in active development!

US Wood County Hospital Sep 2016 Malware Attack (Q12358)

From Open Risk Data
A data breach risk event
Language Label Description Also known as
English
US Wood County Hospital Sep 2016 Malware Attack
A data breach risk event

    Statements

    September 2016
    0 references
    Ohio-based Wood County Hospital averted a potentially widespread ransomware attack by detecting the issue with the help of its managed security services provider (MSSP) two weeks before it surfaced. The ransomware incident took place in September 2016, which is when an employee received a popup message that said files had been encrypted and that Wood County had 72 hours to pay. From the logs that we were able to locate through ExtraHop, we saw the timestamp on the ransomware file, White explained. We looked at [Veriato 360] for that timeframe and we were able to pinpoint exactly where the ransomware came in the system. It was a nurse in behavioral health who had clicked on a website that she goes to on a frequent basis for her job, she continued. It was at the minute she clicked on a link (English)