The 10 Most Influential Multispeciality Hospitals The 10 Most Influential Multispecialty Hospital Sm | Page 24
PHISHING
ATTACK
A Real and Ubiquitous Threat for Healthcare Organizations
T
hough it seems that phishing
is an outdated mode of
hacking, the brutal truth is
that it is still alive and is a real threat
to the healthcare industry. In fact, it
has become a preferred method for
hackers to breach healthcare
organizations to steal valuable
medical data and has devastated the
healthcare industry over recent years.
The primary purpose of a phishing
attack is to gain a grip in the
organization by infecting a computer
or other endpoint.
A recent data breach investigations
report has found that financial
pretexting, i.e. obtaining financial
information under false pretenses and
phishing has represented around 95
percent of all breaches, with email
being the key element.
Attackers use various social
engineering tricks to catch the victim
into clicking on the malicious link.
22 | March 2019 |
They search for public sources to
fetch information about the
organization in the email to make it
look trustworthy. The attackers often
create an urgent scene. For an
instance, there is some admin IT task
that needs to be done to access to
their email, and then they ask us to
click on the link given and the
system is attacked.
Medical Records are their Prime
Target
Today, attackers are becoming more
successful at penetrating networks
because their techniques are getting
more precise and sophisticated. A
recent survey expressed that
attackers are mostly attracted to
valuable medical records. Over one-
quarter of the organizations had
experienced a successful phishing
attack that had infected their network
with malware. Also, attackers are
very conscious of timing for phishing