By Jonathan Mattise

A ransomware attack has prompted a health care chain that operates 30 hospitals in six states to divert patients from at least some of its emergency rooms to other hospitals, while putting certain elective procedures on pause, the company announced.

In a statement Monday, Ardent Health Services said the attack occurred Nov. 23 and the company took its network offline, suspending user access to its information technology applications, including the software used to document patient care.

The Nashville, Tennessee-based company said it cannot yet confirm the extent of any patient health or financial information that has been compromised. Ardent says it reported the issue to law enforcement and retained third-party forensic and threat intelligence advisors, while working with cybersecurity specialists to restore IT functions as quickly as possible. There's no timeline yet on when the problems will be resolved.

Ardent owns and operates 30 hospitals and more than 200 care sites with upwards of 1,400 aligned providers in Oklahoma, Texas, New Jersey, New Mexico, Idaho and Kansas.

All of its hospitals are continuing to provide medical screenings and stabilizing care to patients arriving at emergency rooms, the company said.

“Ardent’s hospitals are currently operating on divert, which means hospitals are asking local ambulance services to transport patients in need of emergency care to other area hospitals,” the company said on its website. “This ensures critically ill patients have immediate access to the most appropriate level of care.”

The company said each hospital is evaluating its ability to safely care for patients at its emergency room, and updates on each hospital's status will be provided as efforts to bring them back online continue.

There was no immediate claim of responsibility for the attack. Ransomware criminals do not usually admit to an attack unless the victim refuses to pay.

A recent global study by the cybersecurity firm Sophos found nearly two-thirds of health care organizations were hit by ransomware attacks in the year ending in March, double the rate from two years earlier but a slight dip from 2022. Education was the sector most likely to be hit, with attack saturation at 80%.

Increasingly, ransomware gangs steal data before activating data-scrambling malware that paralyzes networks. The threat of making stolen data public is used to extort payments. That data can also be sold online. Sophos found data theft occurred in one in three ransomware attacks on healthcare organizations.

Analyst Brett Callow at the cybersecurity firm Emsisoft said 25 U.S. healthcare systems with 290 hospitals were hit last year while this year the number is 36 with 128 hospitals. “Of course, not all hospitals within the systems may have been impacted and not all may have been impacted equally,” he said. “Also, improved resilience may have improved recovery times.”

“We’re not in a significantly better position than in previous years, and it may actually be worse,” he said.

“We desperately need to find ways to better protect our hospitals. These incidents put patients' lives at risk — especially when ambulances need to be diverted — and the fact that nobody appears to have yet died is partly due to luck, and that luck will eventually run out,” Callow added.

Most ransomware syndicates are run by Russian speakers based in former Soviet states, out of reach of U.S. law enforcement, though some “affiliates” who do the grunt work of infecting targets and negotiating ransoms live in the West, using the syndicates’ software infrastructure and tools.

The Kremlin tolerates the global ransomware scourge, in part, because of the chaos and economic damage to the West — and as long its interests remain unaffected, U.S. national security officials say.

While industries across the spectrum have been hit by ransomware, a recent attack on China’s biggest bank that affected U.S. Treasury trading represented a rare attack on a financial institution.

Associated Press technology reporter Frank Bajak contributed to this report.

Share:
More In Technology
NYC Comptroller on New Laws Protecting App-Based Food Delivery Workers
Big Apple workers who deliver for food apps like Doordash and Grubhub will now receive a number of legal protections provided through a package of new regulations that have started going into effect. These updated rules include more control over their deliveries, pay and tip transparency, a higher minimum pay rate, and access to restaurant bathrooms during the workday. New York City Comptroller Brad Lander joined Cheddar to elaborate on the regulations and how the platform holders reacted. "I have to say it's a mixed bag," he said. "Grubhub actually welcomed the legislation and said they recognize they need to do better by their deliveristas, but DoorDash, unfortunately, has actually been pushing back against the legislation."
Mantra Health Raises $22 Million in Series A Funding
Ed Gaussen, co-founder and CEO of Mantra Health, and Matt Kennedy, co-founder and COO of Mantra Health, joined Cheddar News to discuss the digital mental health startup's latest funding round and plans for the future.
Michelin Partners With 'The Sims FreePlay' to Promote Teen Driver Safety Through Gaming
Tire manufacturer Michelin is partnering with the popular video game "The Sims FreePlay" in order to meet teens where they are to promote driving safety. Michelin North America Chairman and President Alexis Garcin joined Cheddar News to discuss how the #GoldenGauge program integrates with the game. "If you're a gamer yourself or your kids, then while you're driving and moving on the application, you will find a Michelin billboard, and if you engage with that billboard, then you will get some advice about how tires are critical for your safety on the road," Garcin explained. *Updated with the full title of 'The Sims FreePlay' and a typo fix in the name of Alexis Garcin.*
The Open Source Afro Hair Library Is Set to Create Inclusivity in Video Games
The video game industry has come a long way from the first commercialized 3D video game in 1980, but it still has a long way to go. Video game creators have recently been called out for not having realistic Black hairstyles in their games and graphic artists are now taking matters into their own hands by creating The Open Source Afro Hair Library. Jovan Wilson, 3D artist and resident for The Open Source Afro Hair Library, joined All Hands to discuss.
Analyst Expects Tesla Earnings Call Focus to Be on 2022 Guidance
After reporting record deliveries in Q4, expectations are high for Tesla's Q4 earnings call. Garrett Nelson, senior analyst and VP of equity research at CFRA, joined Cheddar News to discuss predictions about the report and what he sees as the emphasis on the EV maker's future. "We think the focal point of the release is really going to be on their guidance for 2022, the timing of the ramp-up of their new factories in Texas and Germany in the face of these chip shortages and supply chain issues, and also next steps in its long-term growth plans," he noted.
Load More