Skip to content Skip to navigation

USC’s Keck Medical Center Reports Ransomware Attack

September 26, 2016
by Rajiv Leventhal
| Reprints

The Los Angeles-based Keck Medical Center, part of the University of Southern California, has confirmed that two if its servers were hit with ransomware last month, leading to encrypted files that employees could not access.

According to a statement from the organization released last week, “The attack was quickly contained and isolated to prevent the spreading of malware to other servers.” Data from the encrypted servers was fully restored within several days and no ransom was paid, according to the organization. Officials stated that there is no evidence that data was retrieved or accessed as a result of this ransomware.

“Typically, ransomware is used to deny users access to their information in order to quickly extract money from the data owners—not to steal data. However, as a precaution, we are providing this notice to patients or other individuals whose health or other personal information was in the encrypted folders.”

What’s more, the infected servers do not store Keck's electronic medical record (EMR). Instead, many of the encrypted folders are departmental files that contain internal operational documents such as templates, training manuals, and human resource materials. Sensitive data did however include demographic information, date of birth, identifiable health information, including treatment and diagnosis for some patients, and in some cases, social security numbers.

Regarding the ransomware crisis that is continuing to plague healthcare and other industries, the issue of paying the ransom or not has been a hot one. Recently, the Tulsa, Okla.-based Saint Francis Health System decided not to act on a ransom demand when it was victimized by a breach earlier this month in which approximately 6,000 names and addresses were compromised.

Get the latest information on Cybersecurity and attend other valuable sessions at this two-day Summit providing healthcare leaders with educational content, insightful debate and dialogue on the future of healthcare and technology.

Learn More

Topics

News

ECRI Institute Publishes Guidance for Protecting Medical Devices from Ransomware Attacks

The ECRI Institute has released a new guidance article, "Ransomware Attacks: How to Protect Your Medical Device Systems, with recommendations to help hospitals identify and protect against ransomware attacks.

Survey: Stakeholders Predict More Medical Device Attacks as Security Lags

Some 67 percent of medical device manufacturers and 56 percent of healthcare delivery organizations (HDOs) believe an attack on a medical device built or in use by their organizations is likely to occur over the next 12 months.

AMIA Urges FCC to Consider Access to Broadband a Social Determinant of Health

The American Medical Informatics Association (AMIA) is calling on the Federal Communication Commission’s (FCC) to b support broadband-enabled health care delivery by bolstering its efforts to better target those with chronic conditions, and ensure that those populations have access to affordable broadband and broadband-enabled health technologies.

Reports: VA Secretary Won’t Ask for IT Funding with Uncertainty Surrounding VistA

While many federal agencies saw cuts across the board in President Trump’s 2018 budget request this week, the Department of Veterans Affairs (VA) got a spending boost, albeit not related to information technology.

Mount Sinai Creates Imaging Research Warehouse

The Mount Sinai Health System in New York has created a database that integrates clinical imaging with electronic health records to allow researchers to identify new patterns in the data.

CBO Analysis Estimates House-Passed AHCA Would Leave 23 Million More Uninsured by 2026

If enacted, the American Health Care Act (AHCA) would reduce the federal deficit over the 2017-2026 period by $119 billion and increase the number of people who are uninsured by 23 million in 2026, relative to current law, according to a cost estimate by the Congressional Budget Office (CBO) and the Joint Committee on Taxation (JCT).