Cyberattack round-up: Financial warnings and new threats to hospitals

Hospital financial ratings remain vulnerable to cyberattack fallout, according to a new assessment from Fitch Ratings. Meanwhile, hacktivists and ransomware gangs are recycling ransomware strains, and hacker affiliates are offering bigger payouts. Those are just a few of the healthcare cybersecurity trends we’re watching this week.

Coordinated KillNet DDoS attacks highlight potential for ratings dips

Fitch Ratings says the recent coordinated distributed denial-of-service attacks on hospital websites such as ChristianaCare’s aren’t likely to drive any downgrades at this time, but cyberattacks that compromise service and affect a hospital’s financial profile could.

Last week the pro-Russian hacktivist group KillNet, known for its DDoS attacks on critical infrastructure in nations supporting Ukraine, took down about 20 hospital websites in several states in seemingly one deft stroke. 

“Given what we know at this point, the DDoS attacks are not expected to have any material financial or operational effect on targeted hospitals due to their brief and relatively superficial impact,” said Fitch analysts in the announcement.

While patient portals and health records remained secured, and some affected entities were quickly able to restore their websites, Fitch noted that the coordinated cyberattack was the most widespread to date, and is foreboding in its scale.

“Deployment of a more sophisticated cyber weapon that compromises service and affects a hospital’s financial profile could negatively affect ratings.”

LockBit Green emerges

Malware researchers that keep a close eye on communications among ransomware groups say LockBit has repurposed the Conti encryptor, launching it as LockBit Green.

LockBit switched to prioritizing exfiltration, and dabbles in mixing up its services and approaches to improve recruitment efforts, according to experts.

Using an algorithm based on Conti’s source code has baffled some researchers, but victims of LockBit Green are starting to add up, according to a report by BleepingComputer. One firm conjectured that ex-Conti members preferred LockBit Green after the announcement, because they are more “comfortable.”

The playbook for Conti ransomware-as-a-service leaked in 2021, detailing how bad actors started moving laterally within an environment to increase their chances of success encrypting their target, Chris Fisher, director of security engineering at cybersecurity firm Vectra APJ, told Healthcare IT News that year.

New Nevada ransomware

A new ransomware strain that emerged at the turn of the year with similarities to Petya is designed to target Windows hosts and VMware ESXi systems, new research shows. It excludes English-speaking affiliates and offers payouts of 85% or 90%.

Resecurity said on its blog that Nevada is written in Rust and is similar to Hive, which was recently hacked by the FBI. The firm also said it acquired Linux-based and Windows versions of the new ransomware and discovered more recent updates that improved functionality in the affiliate portal.

“The project is well presented on the RAMP underground forum and has already attracted interest from credible cybercriminals who may be joining them after the closure of other major ransomware networks,” according to the post.

Andrea Fox is senior editor of Healthcare IT News.
Email: af**@***ss.org

Healthcare IT News is a HIMSS publication.

Read More
Margarete Center

Latest

RubyPlay partners with Caesars Entertainment in Ontario to advance North American expansion

RubyPlay, a studio-based content ecosystem, is further strengthening its presence in Ontario as part of its broader North American growth strategy with a new partnership with Caesars Entertainment. The partnership will see a curated selection of RubyPlay’s fan-favourite titles, including JMania® Lucky Pyggs, Mad Hit® Mr Coin and Diamond Explosion® 7s SE, made available on

Wizkid wins “Best African Music Act” at the 2026 MOBO Awards, beats Davido, Tyla, Rema

MusicRead Later (0)Please login to bookmark Close Nigerian superstar Wizkid...

Newsletter

Don't miss

RubyPlay partners with Caesars Entertainment in Ontario to advance North American expansion

RubyPlay, a studio-based content ecosystem, is further strengthening its presence in Ontario as part of its broader North American growth strategy with a new partnership with Caesars Entertainment. The partnership will see a curated selection of RubyPlay’s fan-favourite titles, including JMania® Lucky Pyggs, Mad Hit® Mr Coin and Diamond Explosion® 7s SE, made available on

Wizkid wins “Best African Music Act” at the 2026 MOBO Awards, beats Davido, Tyla, Rema

MusicRead Later (0)Please login to bookmark Close Nigerian superstar Wizkid...

South Block Continues Rapid Expansion Adding 24th Block in Burke, Virginia, March 28

MusicFirst 100 grand opening guests score free Mini...

Family Business? Tee Grizzley Reacts After His Mom Accuses Him Of Leaving Her To Struggle (PHOTOS)

Y’all… it looks like some family tension might be brewing behind the scenes involving Tee Grizzley and his mom. What seemed like a regular social media post quickly turned into something deeper. And now, folks are side-eyeing the situation and wondering what’s really going on. RELATED: Tee Grizzley Shares A Message For Artists After His

SoE necessary but not sufficient, business leaders say

PE­TER CHRISTO­PHER Se­nior Mul­ti­me­dia Re­porter pe­ter.christo­pher@guardian.co.tt Heavy hand­ed but nec­es­sary giv­en the state of crime in T&T. This was a com­mon as­sess­ment from var­i­ous busi­ness groups when asked for their per­spec­tive on the lat­est de­c­la­ra­tion of a state of emer­gency in the coun­try. The T&T Cham­ber of In­dus­try and Com­merce, in a re­leased is­sued yes­ter­day

The Big Business of Carolyn Bessette-Kennedy

Can a nine-episode limited series really impact an entire season of shopping trends? Today brands are experiencing—and chasing—the “Carolyn Bessette-Kennedy effect” as a result of Ryan Murphy’s Love Story. And in many cases, it’s more pervasive than they could have prepared for. The FX series, based on the relationship between John F. Kennedy Jr. and