Healthcare firms face more sophisticated threats and evolving malware

(Image credit: Shutterstock)

Cybercriminals are using increasingly sophisticated methods to attack healthcare companies, which are seen as ripe targets due to the kind of data which can be plundered from these organizations – such as sensitive personal medical details.

This is according to the latest Healthcare Threat Report from Proofpoint, which made several worrying discoveries, including a sizeable increase in ‘imposter email’ attacks that impersonate senior members of staff, attempting to trick the victim into clicking a malware link, or revealing sensitive details.

In the first quarter of 2019, the report noted that targeted healthcare companies were sent 43 of these imposter emails, which is roughly triple the amount compared to the same quarter in 2018.

Typically the subject line included words like ‘urgent’ and ‘payment’, and any sort of message with a suspicious sounding demand which needs to be complied with quickly, or a strange-looking link, should obviously be treated with extreme caution.

If you’re even slightly unsure about something in a message, never click it or respond to it, and check with the appropriate member of staff as to whether they did indeed send the email.

Evolution of malware

Proofpoint also observed that malware is evolving, with more sophisticated strains now out there which combine the capabilities of two (or even more than two) types of malware.

The security firm further noted that the biggest threat to healthcare organizations during the period researched was banking Trojans.

As ever, financial gain is the main motivator for cybercriminals, and that can include ransomware of course, which could have (and has had) dire implications for the likes of hospitals.

Although stolen patient data can, of course, also be used to make money by selling it on to interested unscrupulous parties.

Proofpoint commented: “While the cyberattack techniques against healthcare organizations vary and evolve, one common thread is that they attack people, not just technology. They exploit healthcare workers’ curiosity, time constraints in acute care settings, and their desire to serve. Combating these attacks requires a new and people-centered approach to security.”

Education and awareness is a big part of the battle against cybercriminals, in other words.

TOPICS

Darren is a freelancer writing news and features for TechRadar (and occasionally T3) across a broad range of computing topics including CPUs, GPUs, various other hardware, VPNs, antivirus and more. He has written about tech for the best part of three decades, and writes books in his spare time (his debut novel - 'I Know What You Did Last Supper' - was published by Hachette UK in 2013).

Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring