Patient Sues Hospital Network to Make it Pay Ransom 

“A cancer patient filed the lawsuit as an anonymous plaintiff, referred to as Jane Doe in the lawsuit, after [Lehigh Valley Health Network in Allentown, Pa.’s] chief compliance officer informed her by phone that photos of her naked during her treatment were online, the lawsuit said. Jane Doe said she wasn’t aware the photos were … Read more

What Type of Control is Most Effective in Preventing Successful Cyber Attacks? Marsh Has an Answer

Marsh analyzed its claims data and responses to customer self assessments. The resulting report may surprise some folks… “Automated hardening techniques — by a wide margin — have the greatest ability of any control studied to decrease the likelihood of a successful cyberattack, making it a key control to prioritize in order to minimize losses. … Read more

Financial Sector Chafes at Cyber Insurance Costs & Requirements: Industry Report 

“Cyber insurance will undergo an identity crisis,” says the Financial Services Information Sharing and Analysis Center (FS-ISAC), the cyber intelligence-sharing community for financial services. “(S)ome financial sector firms are beginning to reconsider cyber insurance. In some cases, premiums rise so high that firms are considering ring-fencing capital equivalent to the estimated premiums as an alternative … Read more

Psst… Hackers Try to Team Up with Insured Against Cyber Carriers 

“A new scheme involves demanding that the target provide details of its cyber insurance policies so that the payment demands can be adjusted to fall within the coverage the victim purchased.” (We’ve written about this trend before… ) Excerpt of a message from a ransomware gang (provided by Varonis): “(S)ince the sneaky insurance agent purposely … Read more

What’s the Worst Case for a Catastrophic Cyber Attack? Coalition Has Been Modeling It 

“Built on Coalition’s proprietary data collection platform and knowledge graph, which captures 48 trillion monthly events, the Active Cyber Risk Model offers a more accurate picture of cyber risk for organizations and the broader economy. In a simulation modeled against a sampling of 5,000 American companies, Coalition found that a one-in-250-year cyber event could cost … Read more