Feds Warn of Godzilla Webshell Threats to Health Sector
Stealthy Backdoor Publicly Available on GitHub Can Be Weaponized for Larger Attacks
Excerpt from November 13, 2024 article in Healthcare Infosecurity
While the Health-Information Sharing and Analysis Center has seen an increase in recent reports of ransomware and malware incidents impacting the global healthcare sector, it has had “no direct sightings” of Godzilla webshell so far, said Errol Weiss, chief security officer of Health-ISAC.
Nonetheless, Weiss said he’s glad HHS issued the warning about Godzilla. “I would encourage all organizations, no matter what sector they’re in, to follow the recommendations in the bulletin,” he said.
Health-ISAC’s Weiss recommends that healthcare organizations review and implement the voluntary Cybersecurity Performance Goals published by HHS in January (see HHS Details New Cyber Performance Goals for Health Sector).
“Implementing the CPGs and participating in an information sharing community would help greatly improve the security posture of an organization.”
Read the full story in Healthcare Infosecurity here.
- Related Resources & News
- Leveraging ISO 81001-5-1 Amid Medical Device Procurement
- Mitigating risk as healthcare supply chain attacks prevail
- Enhancing Cybersecurity in Rural Hospitals
- Health-ISAC Hacking Healthcare 11-15-2024
- Cyber Incident Response: Playbook for Medical Product Makers
- Trump’s Return: Impact on Health Sector Cyber, HIPAA Regs
- Health-ISAC Hacking Healthcare 11-7-2024
- Protecting the Healthcare Supply Chain Against Russian Ransomware Attacks
- All hospitals should be concerned about cyberattacks. Here’s why
- Impacts of the BIOSECURE Act on the Global BioTech Industry