Pages

Monday, 4 September 2023

Tenable: Healthcare is top ransomware target

Tenable, the exposure management company, is spotlighting an new shift in cybercriminal tactics. The new targets might not have hefty financial reserves but can cause profound harm when compromised – notably, healthcare institutions across the Asia Pacific (APAC) region, the company said.

With healthcare institutions across the region rapidly digitising and introducing more technology into healthcare, the importance of strengthening cybersecurity cannot be emphasised enough, Tenable said. Its most recent Threat Landscape report revealed that healthcare was the top targeted sector by ransomware attacks in 2022, contributing to 35.4% of all breach events analysed. This was a sharp increase from its previous contribution of 24% of all breach events in the previous year.

Cyberattacks on healthcare institutions across Asia Pacific continue, further underscoring the urgency, Tenable noted. Recent high-profile cyber incidents include the 2023 Covid-19 vaccination portal breach in India, which saw the unauthorised disclosure of healthcare and personal data of millions of individuals, and the cyberattack on Hong Kong’s OT&P Healthcare group. In the Hong Kong incident, the personal data and medical history of over 100,000 patients could have been exposed.

According to the IBM Security Cost of a Data Breach Report 2023, since 2020, healthcare data breach costs have surged by 53.3%. For the 13th consecutive year, the healthcare sector reported the highest data breach costs, with an average cost pegged at US$10.93 M.

Nigel Ng, VP, Asia Pacific and Japan at Tenable, warned, "Cybercriminals have traditionally been attracted to high-yield targets such as the banking, finance, and pharmaceutical sectors. However, it's become evident that their attention has been veering towards healthcare information, mainly because they recognise the slower pace at which healthcare providers in our region are adopting preventive cybersecurity measures."

“The repercussions of cyberattacks are immense - from substantial financial losses to disruptions in essential medical services and compromising patient data. The fact that more people are being alerted about their personal information surfacing on the dark web further underscores the urgency of the situation," Ng added.

As governments across the APAC region look into imposing stricter data-protection laws, Ng championed the proactive approach, stating, "While regulatory measures are essential, waiting for them might be detrimental. Healthcare organisations need to prioritise cybersecurity now. This involves regular risk assessments of the entire attack surface, consistent employee training, and continuous proactive monitoring."

Tenable recommends that healthcare organisations in Asia Pacific take the following steps to protect themselves from cyberattacks:

- Conduct regular risk assessments to identify vulnerabilities.

- Provide cybersecurity training to employees.

- Maintain continuous monitoring of systems to detect potential threats.

- Implement preventive and proactive measures to protect sensitive data, such as encryption and access controls.

- Have a plan in place to respond to a cyberattack.

Ng also pointed out, "Healthcare entities are more than just service providers. They are pillars of trust in our communities. Safeguarding against cyber threats isn't just about data; it's about ensuring the wellbeing of countless individuals and maintaining the seamless delivery of vital medical services."

1 comment:

  1. You have worked charmingly with your pieces of information that simplifies our work. The information you have given is really veritable and immense for us. Keep on sharing such article, Thank you.healthcare marketing companies,healthcare data marketing usa

    ReplyDelete