- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Any of you worked on security for the NHS?
Collapse
X
-
Any of you worked on security for the NHS?
England's greatest sailor since Nelson lost the armada. -
Originally posted by Uncle Albert View Post
Without more details it's hard to say but it looks like a limited number of hospitals have been compromised due to local vulnerabilities. If it was really a systemic issue there would be a lot more affected."Being nice costs nothing and sometimes gets you extra bacon" - Pondlife. -
It might turn out that the fragmented nature of the trusts has helped limit it to only a few hospitals. It's worrying though that one trust with poor security could expose the national services that they access.England's greatest sailor since Nelson lost the armada.Comment
-
-
Originally posted by Uncle Albert View PostIt might turn out that the fragmented nature of the trusts has helped limit it to only a few hospitals. It's worrying though that one trust with poor security could expose the national services that they access.
There really isn't enough detail in the article but it sounds like a number of workstations used to access patient records and other systems have been infected with ransomeware. It's not even necessarily a targeted attack against the NHS, it could very well be coincidence as the bad guys tend to go for a scatter gun approach and simply scan swaths of IP addresses for open connections they can try and exploit.
If the local networks were poorly protected then that could lead to the infection. It only takes one device to be compromised and others on the local networks can also be attacked."Being nice costs nothing and sometimes gets you extra bacon" - Pondlife.Comment
-
Originally posted by stek View PostI was on Spine, I'd be very surprised if anyone got into that.I'm assuming you don't mean that in a good way....
Much securities with plenty cheapness.....When freedom comes along, don't PISH in the water supply.....Comment
-
Originally posted by DaveB View PostIt's not as much of a risk as it might be. Access to national services requires authentication through a NHS Smart Card or other secure mechanisms. A compromised endpoint isn't automatically gong to lead to compromise of other remote services as it's not a generic network connection, but relies on the local application authentication to handle the connection.
There really isn't enough detail in the article but it sounds like a number of workstations used to access patient records and other systems have been infected with ransomeware. It's not even necessarily a targeted attack against the NHS, it could very well be coincidence as the bad guys tend to go for a scatter gun approach and simply scan swaths of IP addresses for open connections they can try and exploit.
If the local networks were poorly protected then that could lead to the infection. It only takes one device to be compromised and others on the local networks can also be attacked.Comment
-
So if they've managed to do that, what's to say they're not downloading all of the patient health records. A breach of that would be the largest ever.What happens in General, stays in General.You know what they say about assumptions!Comment
-
Originally posted by TestMangler View PostI'm assuming you don't mean that in a good way....
Much securities with plenty cheapness.....Comment
-
Originally posted by stek View PostI was on Spine, I'd be very surprised if anyone got into that."Being nice costs nothing and sometimes gets you extra bacon" - Pondlife.Comment
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- How should a creditors’ meeting ideally pan out for unpaid suppliers? Sep 19 07:16
- How should a creditors’ meeting ideally pan out for unpaid suppliers? Sep 18 21:16
- IR35: Substitution — updated for 2025/26 Sep 18 05:45
- Payment request to bust recruitment agency — free template Sep 16 21:04
- Why licensing umbrella companies must be key to 2027’s regulation Sep 16 13:55
- Top 5 Chapter 11 JSL myths contractors should know Sep 15 03:46
- Top 5 Chapter 11 JSL myths contractors should know Sep 14 15:46
- What the housing market needs at Autumn Budget 2025 Sep 10 20:58
- Qdos hit by cybersecurity ‘attack’ Sep 10 01:01
- Why party conference season 2025 is a self-employment policy litmus test Sep 9 09:53
Comment