Healthcare under attack

One in five healthcare organisations reported a change in senior leadership (21%) or lawsuits (19%) as attack consequences, compared to 13% among other sectors surveyed.

  • Wednesday, 22nd January 2025 Posted 1 year ago in by Phil Alsop

Netwrix surveyed 1,309 IT and security professionals globally and today released findings for the healthcare sector based on the data collected.

It reveals that 84% of organisations in the healthcare sector spotted a cyberattack on their infrastructure within the last 12 months. Phishing was the most common type of incident experienced on premises, similar to other industries. Account compromise topped the list for cloud attacks: 74% of healthcare organisations that spotted a cyberattack reported user or admin account compromise.

“Healthcare workers regularly communicate with many people they do not know — patients, laboratory assistants, external auditors and more — so properly vetting every message is a huge burden. Plus, they do not realise how critical it is to be cautious, since security awareness training often takes a back seat to the urgent work of taking care of patients. Combined, these factors can lead to a higher rate of security incidents,” says Dirk Schrader, VP of Security Research and Field CISO EMEA at Netwrix.

A cyberattack resulted in financial damage for 69% of healthcare organisations, compared to 60% among other industries. One in five healthcare organisations that suffered an attack experienced a change in senior leadership (21%) or lawsuits (19%) as a result, compared to 13% for each of these outcomes among all industries surveyed.

“Due to the sensitivity of the protected health information (PHI) data, breaches can cause severe concerns among the general public and various stakeholders. On top of that, healthcare is a highly regulated industry where organisations face strict penalties for non-compliance. Together, these factors lead to a higher-than-average likelihood of lawsuits. At the same time, organisations can feel pressured to change IT or even executive leadership to signal their commitment to addressing security issues and rebuilding trust,” says Ilia Sotnikov, Security Strategist at Netwrix.

TalkTalk Business has finalised its separation from TalkTalk Group and transitioned to independent operations, focusing on managed network and...
Honeywell partners with TCS to enhance AI-driven autonomous operations, leveraging IT and OT convergence for better efficiency and intelligence.
Gamma is introducing Operator Connect capabilities in select European countries to expand reach and reduce complexity for the UK channel.

Unit 42 Global Incident Response Report 2026

Posted 4 days ago by Sophie Milburn
This year’s Palo Alto Networks report outlines key trends in cyber threats and highlights insights into evolving attack tactics and defensive...
UK-based MSP Babble leverages NinjaOne to unify IT operations and strengthen compliance, improving service delivery.
Motive introduces advanced AI enhancements to streamline driver qualification processes and compliance tracking, making operations more efficient.
Westcon-Comstor partners with UiPath to streamline AI automation distribution, fostering growth and improving services for European partners.

DXC Technology opens customer experience centre in London

Posted 5 days ago by Sophie Milburn
DXC Technology opens a Customer Experience Centre in London to support enterprise AI adoption and digital transformation.