The FBI, Cybersecurity and Infrastructure Security Agency, and Australian Cyber Security Centre issued recommendations to help critical infrastructure organizations protect their networks from ransomware attacks and data extortion by a cybercriminal group known as BianLian. 

“The BianLian group, unlike most other ransomware groups, seems to rely primarily on technical exploitation of remote access tools rather than phishing emails,” said John Riggi, AHA’s national advisor for cybersecurity and risk. “The BianLian group has also evolved its tactics to focus on data extortion — theft of sensitive data and threatening to publicize it unless a ransom is paid. The primary recommendations to mitigate this threat are ensuring all remote access software is strictly controlled, monitored and external access limited. As always, phishing-resistant multifactor authentication is a foundational cybersecurity practice, which should also be employed along with the other recommended mitigations contained in this alert.” 

For more information on this or other cyber and risk issues, contact Riggi at jriggi@aha.org. For the latest cyber and risk resources and threat intelligence, visit aha.org/cybersecurity

Related News Articles

Headline
New guidance released yesterday by the Cybersecurity and Infrastructure Security Agency, National Security Agency and FBI informs health care and other…
Headline
A joint advisory released Nov. 20 by the Federal Bureau of Investigation, Cybersecurity and Infrastructure Security Agency and international partners warns of…
Headline
The Department of Justice Nov. 18 announced criminal charges against Evgenii Ptitsyn, a Russian national, for allegedly administering the sale, distribution…
Headline
A United Nations Security Council meeting the week of Nov. 4 discussed ransomware and the severe impacts that cyberattacks can have on hospitals and health…
Headline
AHA President and CEO Rick Pollack was recently a guest on Pinkston's "To the Point" podcast to discuss the future of U.S. health care, touching on a range of…
Headline
The Cybersecurity and Infrastructure Security Agency, FBI and other federal agencies have created a webpage with the latest cyberthreat updates and information…