Ransomware costs N.Y. hospital nearly $10M
Hospital Safety Insider, July 27, 2017
Want to receive articles like this one in your inbox? Subscribe to Hospital Safety Insider!
A hospital that lost control of its computers last spring when hackers unleashed ransomware on its systems has paid nearly $10 million recovering in the past few months.
The hackers had demanded nearly $30,000 worth of bitcoin as ransom, but officials with Erie County Medical Center in Buffalo, New York, declined, knowing there would be no guarantee that the attackers would fully remove their malicious software once paid off, The Buffalo News reported Wednesday.
Instead, the hospital invested in new hardware and software, and it paid for expert advice. Those categories accounted for about half of what has been spent thus far. The other half accounts for overtime pay, lost revenue, and other expenses. Moving forward, officials expect to spend at least $250,000 more per month to continue upgrading technology and educating employees to ward off future attackers.
In the wake of this incident, healthcare workers had to resort to old-school pen-and-paper recordkeeping techniques. But this sort of situation could also threaten patient care more directly.
“Cybersecurity can have a major impact on patient safety,” Mitch Work, MPA, FHIMSS, president and CEO of The Work Group, Inc., told the Patient Safety Monitor Journal. “If hackers are able to access patient records and information, they will conceivably have the capability to change and manipulate patient data, which could have disastrous consequences. Think of [someone] changing medications, patient vital signs, or even diagnoses.”
Want to receive articles like this one in your inbox? Subscribe to Hospital Safety Insider!
Related Products
Most Popular
- Articles
-
- Math can be tricky: TJC corrects ABHR storage requirement
- Air control equals infection control
- Don't forget the three checks in medication administration
- Residency coordinators’ responsibilities
- Note similarities and differences between HCPCS, CPT® codes
- Study: Shorter shifts reduces residents’ attentional failures
- The consequences of an incomplete medical record
- RPA Subscriber Exclusive: February issue of Residency Program Alert now available
- Practice the six rights of medication administration
- OSHA HazCom updates include labeling, SDS requirements
- E-mailed
-
- Air control equals infection control
- OSHA HazCom updates include labeling, SDS requirements
- Tip: Note new thyroid imaging codes
- Tim Porter-O'Grady sounds off
- Skills of effective case managers
- Q: Can you clarify the reporting of dates on the plan of care for diagnosis onset and exacerbation?
- Q&A: Defining Subacute
- Q&A: Are colleges sending students to our facility for rotations business associates?
- Note similarities and differences between HCPCS, CPT® codes
- Fracture coding in ICD-10-CM requires greater specificity
- Searched