IoT and ransomware are big security risks, and health systems feel unprepared

Healthcare organizations are increasingly under siege from sophisticated cyberattacks, with ransomware groups exploiting vulnerabilities in critical infrastructure.

In 2024, nearly 400 U.S. healthcare organizations reported incidents linked to ransomware operators like LockBit 3.0, ALPHV/BlackCat and BianLian, according to a recent report from Veriti.

Half of healthcare organizations surveyed said they lack confidence in detecting and resolving such breaches, 42% of organizations lack policies to prevent unauthorized data access, and 51% lack the necessary technologies for breach prevention.

Endpoint misconfigurations emerged as a significant risk, with 35% of systems unable to quarantine malicious files, increasing susceptibility to ransomware encryption.

Misconfigured recovery processes further exacerbated risks, impacting 22% of hosts by allowing attackers to disable volume shadow copies and recovery tools.

Medical devices and protocols like DICOM are also vulnerable, creating opportunities for data theft and unauthorized access.

Oren Koren, cofounder and CPO of Veriti, explained that the rise of IoT devices, AI integration and cloud-based systems adds new dimensions to these challenges.

He said one of the most concerning findings from the report was the fact that vulnerabilities are not and will not be patched.

“This poses an extensive threat to any healthcare organization that uses devices that can’t be updated or upgraded, due to compliance and regulation,” he said. “Unfortunately, we will continue to see healthcare organizations getting hammered by ransomware as a result of that.”

Koren added that, in the face of evolving threats, healthcare organizations are currently focusing on two main things – virtual patches, using the compensating control as a countermeasure for risks they can’t address, and disaster recovery plans with massive purchases of hardware and software for a catastrophic event.

“They will need to evaluate their current systems and adapt to more innovative control measures to avoid future threats,” he said.

Koren predicted that IoT threats would continue to evolve in 2025 and cautioned that exposed assets – those which must be exposed for maintenance – are getting hacked much faster.

“The usage of AI and automatic vulnerability scanning performed by the attackers allows them to find an exposed IoT device and conduct an attack on it much quicker than they used to be able to,” he said.

He added most healthcare organizations’ security controls now rely on advanced AI to analyze threats.

However, due to strict regulations, sensitive healthcare data needs to remain confidential, meaning patient data is excluded from AI analysis

Koren said by 2025, enhanced intelligence sharing will enable rapid responses to emerging threats.

“When a threat is identified in one organization, alerts and necessary countermeasures will be swiftly disseminated to others – emphasizing pre-breach hardening as the central approach,” he explained.

As healthcare organizations struggle to defend themselves from a growing number of threats, they are turning to Zero Trust, micro-segmentation and proactive threat-management to shore up security.

A recently introduced healthcare cybersecurity bill would support healthcare organizations with grants aimed at strengthening prevention and response, while the Administration for Strategic Preparedness and Response is seeking feedback through surveys and task-group evaluations to assess and strengthen the cybersecurity readiness of public health organizations.

Nathan Eddy is a healthcare and technology freelancer based in Berlin.
Email the writer: na********@***il.com
Twitter: @dropdeaded209

Camellia Culton
Read More

Latest

RubyPlay partners with Caesars Entertainment in Ontario to advance North American expansion

RubyPlay, a studio-based content ecosystem, is further strengthening its presence in Ontario as part of its broader North American growth strategy with a new partnership with Caesars Entertainment. The partnership will see a curated selection of RubyPlay’s fan-favourite titles, including JMania® Lucky Pyggs, Mad Hit® Mr Coin and Diamond Explosion® 7s SE, made available on

Wizkid wins “Best African Music Act” at the 2026 MOBO Awards, beats Davido, Tyla, Rema

MusicRead Later (0)Please login to bookmark Close Nigerian superstar Wizkid...

Newsletter

Don't miss

RubyPlay partners with Caesars Entertainment in Ontario to advance North American expansion

RubyPlay, a studio-based content ecosystem, is further strengthening its presence in Ontario as part of its broader North American growth strategy with a new partnership with Caesars Entertainment. The partnership will see a curated selection of RubyPlay’s fan-favourite titles, including JMania® Lucky Pyggs, Mad Hit® Mr Coin and Diamond Explosion® 7s SE, made available on

Wizkid wins “Best African Music Act” at the 2026 MOBO Awards, beats Davido, Tyla, Rema

MusicRead Later (0)Please login to bookmark Close Nigerian superstar Wizkid...

South Block Continues Rapid Expansion Adding 24th Block in Burke, Virginia, March 28

MusicFirst 100 grand opening guests score free Mini...

Family Business? Tee Grizzley Reacts After His Mom Accuses Him Of Leaving Her To Struggle (PHOTOS)

Y’all… it looks like some family tension might be brewing behind the scenes involving Tee Grizzley and his mom. What seemed like a regular social media post quickly turned into something deeper. And now, folks are side-eyeing the situation and wondering what’s really going on. RELATED: Tee Grizzley Shares A Message For Artists After His

SoE necessary but not sufficient, business leaders say

PE­TER CHRISTO­PHER Se­nior Mul­ti­me­dia Re­porter pe­ter.christo­pher@guardian.co.tt Heavy hand­ed but nec­es­sary giv­en the state of crime in T&T. This was a com­mon as­sess­ment from var­i­ous busi­ness groups when asked for their per­spec­tive on the lat­est de­c­la­ra­tion of a state of emer­gency in the coun­try. The T&T Cham­ber of In­dus­try and Com­merce, in a re­leased is­sued yes­ter­day

The Big Business of Carolyn Bessette-Kennedy

Can a nine-episode limited series really impact an entire season of shopping trends? Today brands are experiencing—and chasing—the “Carolyn Bessette-Kennedy effect” as a result of Ryan Murphy’s Love Story. And in many cases, it’s more pervasive than they could have prepared for. The FX series, based on the relationship between John F. Kennedy Jr. and