In the Covid-19 pandemic, healthcare providers became lucrative targets for threat actors due to their central role in combating and mitigating the virus. Their pivotal role was a favorable scenario for hackers to profit. To support this hypothesis, this chapter analyzes the rise of ransomware attacks on healthcare providers in the years prior to the pandemic (2018–2020), its peak in 2021, and its subsequent decline (2021–2023). Ransomware attacks are highly versatile because the malware encrypts the files on the system, denies access to the files, and allows the threat actors to access, retrieve, and publish the data acquired. The victim is two-fold more prone to pay the ransom due to the need to decrypt the files, restore the system’s normal functioning, and avoid publishing the data. Considering the added pressure on hospitals, they would have additional pressure to pay the ransom. This chapter delves into the threat actors’ motivation to target healthcare providers. It then identifies the Covid-19 pandemic as a framework of added pressure for hospitals, and hence, their attractiveness as profitable targets. Subsequently, it analyzes the number of attacks and ransom payments and assesses these attacks’ success.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

To Pay or Not to Pay: Ransomware Attacks on Healthcare Providers Before and After the Covid-19 Pandemic

  • Marina Tovar i Velasco

摘要

In the Covid-19 pandemic, healthcare providers became lucrative targets for threat actors due to their central role in combating and mitigating the virus. Their pivotal role was a favorable scenario for hackers to profit. To support this hypothesis, this chapter analyzes the rise of ransomware attacks on healthcare providers in the years prior to the pandemic (2018–2020), its peak in 2021, and its subsequent decline (2021–2023). Ransomware attacks are highly versatile because the malware encrypts the files on the system, denies access to the files, and allows the threat actors to access, retrieve, and publish the data acquired. The victim is two-fold more prone to pay the ransom due to the need to decrypt the files, restore the system’s normal functioning, and avoid publishing the data. Considering the added pressure on hospitals, they would have additional pressure to pay the ransom. This chapter delves into the threat actors’ motivation to target healthcare providers. It then identifies the Covid-19 pandemic as a framework of added pressure for hospitals, and hence, their attractiveness as profitable targets. Subsequently, it analyzes the number of attacks and ransom payments and assesses these attacks’ success.