[ad_1]
Ireland is working on a decryption tool that may end the week-long shutdown of the hacked IT system of its medical services, and has also obtained a court order prohibiting the sharing and publishing of stolen data.
The Irish government said in a statement issued on Thursday night that it has provided decryption tools, “this may support the work in progress. [to] Fix the impact of cyber attacks on HSE (Health Service Executive) IT systems”.
As part of the attack, the hacker encrypted the HSE data, so the HSE could not access it. The tool will allow the HSE to re-access the data (if feasible).
In addition, the Dublin High Court granted HSE an injunction order prohibiting anyone from sharing, processing, selling or publishing any data stolen by hackers. HSE said the move is aimed at making it illegal to share information on sites such as Google and Twitter.
The news was released less than 24 hours after hackers warned that unless a ransom of $20 million is paid by Monday, patients and other confidential data will be published and sold online. The hacker attack began in the early morning of May 14, forcing Ireland to shut down most of its healthcare IT systems, causing huge damage.
Health Secretary Stephen Donnelly (Stephen Donnelly) emphasized on Thursday that no ransom was paid for the decryption key. The online chat seen by the Financial Times showed that the key was provided by an account called ContiLocker Team.
Ireland has stated that the Conte hacker group was behind the attack. The ContiLocker team’s account has shared a sample of 27 documents, including information related to 12 named individuals, “Financial Times” Reported on Wednesday.
The government stated that investigators are currently implementing “detailed technical procedures to ensure the integrity of this decryption tool… to ensure that the tool will support the recovery of our system and not cause further harm.”
Investigators have not yet confirmed the leak, but Irish Communications Minister Eamon Ryan, who is in charge of the National Cyber Security Center, said the Financial Times report was “credible and accurate.”
A chat entry between the ContiLocker team and an unnamed account on Wednesday night warned: “We will start selling and publishing your data on Monday.” Online chats are conducted on the dark web, and the dark web can only be called Access for Tor’s anonymous browser.
The ContiLocker team claimed to have stolen 700gb of data from HSE, including patient files, salary information, bank statements and business documents.
The British “Financial Times” checked a medical file, which included a person’s admission report, doctor’s letter and laboratory report, as well as the contact information and other personal information of his close relatives. The detailed information in the file matches the public death notice.
Six days after the ransomware attack, the doctor warned Patient care Affected by postponed services, including radiation, X-ray and cervical cancer examinations, as well as difficulty in obtaining patient examination results.
Dr. Vida Hamilton, Senior Director of HSE, on Thursday morning Tell the RTE radio station in Ireland Hacking has caused a “huge risk” in the hospital. “We don’t know anything about individuals. We don’t have diagrams or record numbers, she said. He describes how manual processes introduce “risks of delays and errors”.
Although hacker attacks have caused many other victims, including the recent ransomware attacks on US pipelines that have caused fuel shortages, scrutiny has increasingly turned to flaws that make HSE vulnerable.
The Irish Times report on Thursday described how internal audits are flagged “weakness” The content of HSE’s security control and disaster recovery agreement can be traced back to three years ago.
[ad_2]
Source link



