The ransomware attacks spreading across at least 99 countries on Friday are the type of attack that could one day kill someone.
That sounds like hyperbole, but this attack froze and disrupted computers inside many National Health Service hospitals in the United Kingdom, and it's not hard to see how an attack on hospital computer systems affects patient care or, at the very least, forces patients in need to find help elsewhere as hospital staff scramble to get vital systems back online. That type of disruption, combined with a person faced with a life-threatening condition, has the potential to result in the loss of life.
SEE ALSO:Mysterious bots flood the FCC with fake anti-net neutrality commentsCybersecurity experts have long used the phrase "where bits and bytes meet flesh and blood," which signifies a cyberattack in which someone is physically harmed.
There's no indication that someone was harmed on Friday as a result of this particular attack. But UK hospitals were forced to redirect patients from affected hospitals after a ransomeware virus spread through hospital computers, locking them down and demanding bitcoin payment in exchange for the return of the information contained in those computers.
Screenshot of apparent ransomware attack message sent to NHS England trusts https://t.co/jODkWomGPA pic.twitter.com/uc2HlGH9yM
— BBC Breaking News (@BBCBreaking) May 12, 2017
Staff also asked that patients not come in unless they were experiencing an emergency. Some hospital staff couldn't access patient records, and others had to cancel appointments.
The scale of this attack is unusual, but the type of attack is not. It's happened before -- to hospitals in London in January, for example -- and it's almost certainly going to happen again and again.
Joshua Corman, who sits on the Health Care Industry Cybersecurity Task Force, which falls under the Department of Health and Human Services, paints an abysmal picture of the state of cybersecurity at hospitals around the United States. According to him, around 85% of U.S. hospitals don't have a single full-time cybersecurity expert on staff. Even if they did, that cybersecurity expert would often be helpless against ransomware attacks of the sort the world saw on Friday. Hospitals often run on comically outdated computers that are vulnerable to a range of unpatchable exploits, and those computers are often networked without the proper security precautions.
"Even though these are very avoidable things, like patching Microsoft, if there's no one doing them...then yo have this very rich soil for these attacks to take root," Corman said.
Part of what makes Friday's ransomware attack so worrisome is that it did a ton of damage without much sophistication. It appears to have started just like most such attacks, by sending malicious documents around and waiting for folks to open them. Once opened, this attack installs a ransomware known as WannaCry, which locks down the infected computer and demands Bitcoin in exchange for a return to normalcy. At that point, WannaCry spreads to connected Windows computers through a Windows SMB Server vulnerability. Microsoft released a patch for that vulnerability on March 14, but if no one's updated their computers since then, those computers remain vulnerable.
"There's never going to be any shortage of unpatched systems or legacy systems that cannot be patched," said Jim Walter, a senior research scientist at Cylance, which develops anti-virus software. "What you see today is just the latest in the ongoing trenchant behavior we've seen all along."
Yet for hospitals, there's no easy way to prevent this kind of attack.
"Everybody thinks, 'oh if something bad happens we'll just fix it,'" Corman said, but that's not the case here. Blocking future ransomware attacks will require cybersecurity personnel, new computers, and better network security. Systemwide security revolution isn't something that can be fixed in a matter of days, weeks, or even months.
But until hospitals have vastly greater cybersecurity, these attacks will continue to make frightening headlines.
TopicsCybersecurityMicrosoft
(责任编辑:熱點)
Photos show the Blue Cut fire blazing a path of destruction in California
Facebook doesn't scan Messenger for fake news. But it definitely should
The year we turned against social media
Facebook is the biggest social network. Now, it's trying to become the best.
This German startup wants to be your bank (without being a bank)Visualizing July's astounding global temperature records
July set a rare temperature record during a year that is featuring off the charts warmth. The month
...[详细]Of course Kristen Bell makes being pregnant look like so much fun
Kristen Bell may seem superhuman at times, but it's true, she pretty much is —and she has the
...[详细]Amber Heard speaks out after controversy over J.K. Rowling's Johnny Depp statement
Amber Heard has released a statement following the intense media coverage of J.K. Rowling's comment
...[详细]On a magical night 22 years ago, Jason Priestley punched Harvey Weinstein in the face
Let's give it up for Jason Priestley, the unlikeliest hero man of 2017.。The
。 Beverly Hills 90210
。hea
...[详细]Nancy Pelosi warns colleagues after info hacked
House Minority Leader Nancy Pelosi warned fellow Democrats on Saturday to change their cellphone num
...[详细]Witness this woman's rollercoaster ride of emotions as she wins $11 on HQ Trivia
The fool who said it's not about winning, it's the taking part that counts was horribly, horribly mi
...[详细]The internet is ablaze with 'sex is cool' memes
The internet is back at it again with the lol-tastic memes. And, this time, the viral meme of the ho
...[详细]'A Christmas Prince' vs 'Christmas Inheritance': Which to watch?
Christmas Inheritance。is a cheesy monstrosity, and I'll probably watch it at least two more times be
...[详细]Olympic security asks female Iranian fan to drop protest sign
Olympic security personnel questioned a female Iranian volleyball fan Saturday when she showed up fo
...[详细]'The Legend of Zelda: Breath of the Wild' was the most unforgettable game of 2017
Sometimes a game becomes an escape, its world and characters opening their welcoming arms and allowi
...[详细]This company is hiring someone just to drink all day

American Express finally ditches the need for signatures with its credit card
