The FBI today released an alert on the ransomware variant Darkside, which this month infected a critical infrastructure company in the United States. The ransomware-as-a-service variant has affected various sectors since October 2020, including health care.
 
“Today the FBI confirmed that the Darkside ransomware is responsible for the compromise of the Colonial Pipeline networks,” said John Riggi, AHA senior advisor for cybersecurity and risk. “The agency continues to work with the victim and government partners on the investigation. This is one of the most significant cyberattacks on U.S. critical infrastructure. Although the Darkside group claims they will not directly target hospitals, all should be prepared for either intentional targeting by Darkside or the resulting impact and collateral damage from a Darkside ransomware attack on a business associate.”  
 
On Friday, the British National Cyber Security Centre and U.S. Cybersecurity and Infrastructure Security Agency, FBI and National Security Agency released a joint advisory with additional details on the latest cyber tactics associated with the Russian Foreign Intelligence Service, to which recent cyberattacks targeting SolarWinds software and COVID-19 vaccine developers were attributed.
 
For more information on this or other cyber and risk issues, contact Riggi at jriggi@aha.org.
 

Headline
FBI Co-deputy Director Andrew Bailey discussed a rise in cyber and physical threats impacting health care. He discussed health care as the top critical…
Headline
Health care and public health was the top sector targeted for cyberthreats in 2025, according to the FBI’s latest annual report on internet crimes. There were…
Headline
The Cybersecurity and Infrastructure Security Agency released an alert March 27 on a vulnerability in F5 BIG-IP Access Policy Manager software that is being…
Headline
The FBI released an alert March 20 warning of a technique used by cyber actors working on behalf of the Iranian government to conduct malicious cyber activity…
Headline
The Cybersecurity and Infrastructure Security Agency March 18 released an alert urging U.S. organizations to harden their endpoint management systems following…
Headline
The Health Sector Coordinating Council Cyber Working Group and Health-ISAC (Information Sharing and Analysis Center) will host a joint cybersecurity event July…