Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Tuesday, 9 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Ransomware on Healthcare Organisations cost Global Economy $92 bn

By targeting healthcare organisations around the globe, threat actors have cost the economy almost $100 bn in downtime

by The Gurus
November 16, 2022
in Editor's News, Features, Insight, Malware, Phishing and Ransomware, News, Research
Ransomware on Healthcare Organisations cost Global Economy $92 bn
Share on FacebookShare on Twitter

Today, Comparitech released the results of its most recent study, looking at the true cost of ransomware on healthcare organisations around the world. It found that, since 2018, there have been 500 publicly-confirmed ransomware attacks; and this excludes those that may have not been disclosed at all. In total, these have crippled nearly 13,000 separate facilities and have impacted almost 49 million patient records. As such, Comparitech was able to estimate that these attacks exceed US$92 billion in downtime alone.

Ransomware attacks have the potential to cause widespread disruption to any organisation. Not only can they encrypt key systems, they can put personal data at risk of theft and exploitation. Place this scenario in a healthcare environment, and the stakes are much higher. Critical systems and patient data may become inaccessible, causing severe delays and, in the worst case scenario, could even be deadly. For example, a lawsuit in Alabama, due for trial this month, suggests a ransomware attack on a hospital led to a baby’s death in 2019.

In their study, Comparitech also explores the extent of ransomware attacks across healthcare organisations around the world. Using data from their worldwide ransomware tracker, the team explored the growing threat of ransomware in the healthcare sector and the true cost of these attacks. However, as the results only include publicly-confirmed attacks, the presented figures likely only scratch the surface.

The key findings highlighted in this report are as shown:

From the beginning of 2018 to October 2022, Comparitech research found:

  • 500 individual ransomware attacks on healthcare organisations. 2021 was the biggest year for attacks with 166 in total
  • 12,961 separate hospitals/clinics/organisations were potentially affected
  • 48,847,107 individual patient records were impacted in these attacks–at least. Just less than half of these (20 million) were impacted in 2021
  • Ransom demands varied from $900 to $20 million
  • We estimate that hackers have demanded over $1.2 billion in ransoms
  • We estimate that nearly $44 million has been paid to hackers in ransom demands
  • Downtime varied from a couple of hours of disruption to seven months of systems not being at full capacity
  • The average downtime from attacks increased dramatically in 2021 and 2022 with 19.5 and 16 days lost on average, respectively
  • The overall cost of downtime is estimated at $92bn
  • Conti, Pysa, Maze, Hive, and Vice Society are the most dominant ransomware strains with the first three dominating in 2020/21 but the latter two taking over in 2021/22

According to the results, 2021 was the biggest year for ransomware attacks on healthcare organisations, accounting for just over 33 percent (166) of all the attacks since 2018. 2020 was also a big year, with 137 attacks noted in total.

Both of these years coincide with the COVID-19 pandemic. This can be attributed to the fact that healthcare organisations found themselves stretched and under pressure, allowing hackers to find ways to exploit weak points, such as tired staff members failing to spot phishing emails containing ransomware.

In 2022, ransomware attacks on healthcare organisations remain a very prominent threat. Even though the numbers have seen a dip, the threat should continue to be viewed as a persistent threat, particularly as ransom sums are rowing and downtime is increasing. Hackers are perhaps becoming more targeted in their approach, ensuring widespread disruption is achieved so as to increase their chances of receiving the ransom.

Commenting on this story, Oscar Miranda, CTO for Healthcare at Armis says: “The post pandemic world has seen regulatory changes that have enabled more virtual and remote care programs to continue, which are leading to more distributed environments with more devices that are at risk. In tandem, healthcare IT is being tasked to address many of the same challenges facing healthcare – high costs, staffing shortages, ageing populations. Therefore, healthcare organisations are confronted with not only staffing clinical roles, but IT roles as well. Expectations are higher than ever for IT, but harder to recruit and retain the talent to implement and secure, a more distributed connected environment – and the bad actors are fully aware and exploiting the situation, as evidenced by the Comparitech research.”

Nick Rago, field CTO at Salt Security states that this study reflects: “the stakes for the healthcare industry when it comes to security…” He adds that “it’s also important to understand what’s driving the increase in risk. One source in particular, the widespread adoption of digitalisation, represents the biggest driver of risk — it has accelerated the rate of cybersecurity threats within the healthcare industry. Digital value-added capabilities have brought new and innovative opportunities for healthcare services, but at the same time, these initiatives have also expanded the attack surface. Personal and sensitive healthcare data must be shared across numerous modern healthcare apps to enable services, such as remote access to health records, online medication ordering, and appointment scheduling.”

To read the full report, visit: https://www.comparitech.com/blog/vpn-privacy/worldwide-healthcare-ransomware-attacks/

ShareTweet
Previous Post

Closed Door Security joins the Cyber Scheme

Next Post

3 Ways Software Licensing Eliminates Vulnerabilities to Enhance Security

Recent News

Is Offensive Security Keeping Up with the Latest Cyber Attacks?

Is Offensive Security Keeping Up with the Latest Cyber Attacks?

June 9, 2026
Filigran uses AI agents to make CTEM practical for overstretched security teams

Filigran uses AI agents to make CTEM practical for overstretched security teams

June 9, 2026
Frontline Workers Twice as Likely to Use Unapproved AI

Frontline Workers Twice as Likely to Use Unapproved AI

June 4, 2026
Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol