The FBI today released an alert on the ransomware variant Darkside, which this month infected a critical infrastructure company in the United States. The ransomware-as-a-service variant has affected various sectors since October 2020, including health care.
 
“Today the FBI confirmed that the Darkside ransomware is responsible for the compromise of the Colonial Pipeline networks,” said John Riggi, AHA senior advisor for cybersecurity and risk. “The agency continues to work with the victim and government partners on the investigation. This is one of the most significant cyberattacks on U.S. critical infrastructure. Although the Darkside group claims they will not directly target hospitals, all should be prepared for either intentional targeting by Darkside or the resulting impact and collateral damage from a Darkside ransomware attack on a business associate.”  
 
On Friday, the British National Cyber Security Centre and U.S. Cybersecurity and Infrastructure Security Agency, FBI and National Security Agency released a joint advisory with additional details on the latest cyber tactics associated with the Russian Foreign Intelligence Service, to which recent cyberattacks targeting SolarWinds software and COVID-19 vaccine developers were attributed.
 
For more information on this or other cyber and risk issues, contact Riggi at jriggi@aha.org.
 

Headline
The Cybersecurity and Infrastructure Security Agency and other federal agencies released a fact sheet June 2 on malicious cyber activity targeting U.S.-based…
Headline
The FBI and international agencies have released an alert on Chinese military intelligence services using professional networking sites and online job…
Headline
The White House issued an executive order June 2 on cybersecurity efforts regarding artificial intelligence. The order instructs federal…
Headline
The Health Sector Coordinating Council’s Cybersecurity Working Group has released a guide to help healthcare organizations establish cyber governance…
Headline
The FBI has released an alert on a cyber threat group called the Silent Ransom Group, which has targeted healthcare and other industries in recent years using…
Headline
The Cybersecurity and Infrastructure Security Agency May 26 announced a revised schedule for its series of virtual town hall meetings for public input on…