The Alphv ransomware group, also known as BlackCat, has added Morrison Community Hospital to its victims' data leak site on the dark web.

The group claims to have stolen 5TB of patient and employee information, backups, PII documents, and more. The gang also published a sample of the stolen information to prove its claims.
According to securityaffairs, the hacking group has begun contacting journalists because Morrison Community Hospital representatives have not responded as they should. The BlackCat gang warns that it will also begin contacting patients.
Researcher Brett Callow states that in 2023, 29 US healthcare systems related to the operation of at least 90 hospitals have been attacked by ransomware. In fact, in most cases, there was also data theft.
See also: Partial encryption: The latest trend in ransomware
In September, the LockBit ransomware group breached two hospitals, Carthage Area Hospital and Clayton-Hepburn Medical Center in New York.
This is not the first time the Lockbit or its affiliates have targeted a hospital. In January, the gang officially apologized for the attack on the Hospital for Sick Children (SickKids) and released a free decryption tool for the hospital.
The group has banned affiliates from using ransomware to attack healthcare organizations. The attack on SickKids was carried out by an affiliate, and the gang blocked him for violating its rules.
However, in the past other affiliates of the group have carried out attacks on hospitals.
Generally, ransomware groups attack organizations that they believe can bring them the most revenue. The continued and proper operation of a hospital is essential for the safety of patients. Therefore, a hospital is more likely to succumb to the demands of hackers in order to function properly again.
See also: Ransomware attacks target vulnerable WS_FTP servers

Ransomware and hospitals
In recent years, many ransomware attacks have taken place on hospitals and in many cases have put human lives at risk.
Ransomware is a type of malware that, once it enters a computer system, encrypts data or blocks access to it until users pay a ransom to the attackers. In sectors such as healthcare, where access to sensitive and vital data is essential, the consequences of such an attack can be catastrophic.
Impacts on Health Service Provision
Initially, the provision of essential healthcare services may be hampered or even stopped altogether while ransomware attacks are ongoing. Hospitals are unable to respond to the needs of their patients, putting their health and lives at risk at a time when they are already very vulnerable.
Impacts on Patients' Personal Data
Additionally, ransomware attacks can have serious implications for patients’ personal data. If, for example, data is stolen during the attack, patients are exposed to potential risks of information disclosure or fraud.
See also: FBI: More information on AvosLocker ransomware and protection tips
Cost Implications for Hospitals
Finally, there is also a significant cost dimension to ransomware attacks. These attacks can cost hospitals millions of dollars in ransom, as well as losses due to downtime and costs to restore and upgrade computer systems.
Ransomware is a very real and dangerous public health threat in the digital age .It is an issue that requires immediate attention and action from governments, health authorities, and network and data providers.
Source: securityaffairs.com
