Healthcare system's ransomware attack allowed by known security flaw

Last month’s attack on MedStar Health’s computer systems came through a well-known security vulnerability in an application server


The recent ransomware attack on MedStar Health’s computer systems came through from a well-known security vulnerability in an application server, according to an article on the Healthcare Finance website.

The  attack occurred after hackers discovered that MedStar uses JBoss, an application server with a recognized design flaw. The hackers used a virus-like software to scan the Internet for vulnerable JBoss servers.

Security researchers found that the JBoss application server was routinely misconfigured to allow unauthorized outside users to gain control.

The US government, Red Hat Inc., and other groups released warnings about the security issue in February 2007 and March 2010. MedStar could have fixed the vulnerability by installing a patch for the system or manually deleting two lines of software code. 

Read the article.

 

 



April 19, 2016


Topic Area: Safety


Recent Posts

Spaces That Support: Patient-Centered Design for Modern Reproductive Health

Modern facilities must integrate highly specialized laboratories with thoughtful, patient-centered spaces that prioritize privacy, comfort and emotional well-being.


Modernization of Buildings Require Collaboration Across All Disciplines

Retrofitting outdated facilities requires consulting all departments on how to best improve operations.


Children's Health Announces Plans for RedBird Specialty Center in Texas

The system expects to welcome its first patients in December 2027.


How Can Healthcare Facilities Use Efficiency to Drive Climate and Health Goals?

Keith Edgerton discusses how the Health Care Energy & Water Efficiency Checklist helps healthcare connect operational savings with their mission to protect people and the planet.


El Camino Health Rehabilitation Hospital Officially Tops Out

This new 64,000-square-foot, 52-bed inpatient facility in Sunnyvale, California, will enhance rehabilitation services in Santa Clara County.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.