Virtual Event: Threat Detection & Incident Response Summit - Watch Now
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Breaches

Ransomware Attack Hits OneBlood Blood Bank, Disrupts Medical Operations

OneBlood, a non-profit blood bank serving more than 300 U.S. hospitals, has been hit by a disruptive ransomware attack.

OneBlood, a non-profit blood bank serving a major chunk of U.S. southeast medical facilities, has been hit by a disruptive ransomware attack.

The organization, which provides blood services to more than 300 hospitals in Florida, Georgia and the Carolinas, said the security breach impacted its software system and slowed down operations.

“Although OneBlood remains operational and continues to collect, test and distribute blood, they are operating at a significantly reduced capacity,” OneBlood said in a statement.

OneBlood senior vice president Susan Forbes said the organization is implementing “manual processes and procedures to remain operational.”

“Manual processes take significantly longer to perform and impact inventory availability. In an effort to further manage the blood supply we have asked the more than 250 hospitals we serve to activate their critical blood shortage protocols and to remain in that status for the time being,” Forbes added.

OneBlood said it is working closely with anti-malware specialists and federal, state and local agencies as part of their incident response plan. 

Advertisement. Scroll to continue reading.

“Our team reacted quickly to assess our systems and began an investigation to confirm the full nature and scope of the event.  Our comprehensive response efforts are ongoing and we are working diligently to restore full functionality to our systems as expeditiously as possible,” Forbes said.

Technical details of the ransomware behind this attack are not currently available.

OneBlood is the latest addition to a growing list of hospitals and medical services suppliers falling victim to big-money data extortion malware attacks.

Earlier this month, the U.S. government joined with Mandiant to expose a North Korean APT group caught conducting ransomware attacks against healthcare providers.

Related: Healthcare’s Ransomware Epidemic: Why Cyberattacks Hit the Medical Sector With Alarming Frequency

Related: Healthcare Giant Ascension Hacked, Hospitals Diverting Emergency Service

Related: When Ransomware Hits Healthcare: To Pay or Not to Pay?

Related: North Korean Threat Actor Engaging in Espionage, Revenue Generation Attacks

Written By

Ryan Naraine is Editor-at-Large at SecurityWeek and host of the popular Security Conversations podcast series. He is a security community engagement expert who has built programs at major global brands, including Intel Corp., Bishop Fox and GReAT. Ryan is a founding-director of the Security Tinkerers non-profit, an advisor to early-stage entrepreneurs, and a regular speaker at security conferences around the world.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

Organizations are investing heavily in third-party risk management, but breaches, delays, and blind spots continue to persist. Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice.

Register

People on the Move

Joe Chen has become Chief Technology Officer at Trellix.

Usercentrics has named Pawan Hegde as COO and Elena Ignatova as CPTO.

SecureAuth has named Mark van Oppen as Chief Revenue Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.