NHS cyber attack: Why stolen medical information is so much more valuable than financial data

Ransomware appears to be at the heart of the problem: Reuters
Ransomware appears to be at the heart of the problem: Reuters

The NHS has been plunged into chaos after being attacked by cyber criminals, who could go on to sell patients’ stolen data for huge amounts on the Dark Web.

Medical records can be much more valuable to criminals than financial data, as they allow them to take time to plot their next moves.

Patients who have had their medical information stolen might not realise it’s even happened until the attackers have already set their plans in motion.

“The main reason medical institutions and the NHS are targeted is because they have vast amounts of patient data at their disposal,” says Jean-Frederic Karcher, the head of security at communications provider Maintel. “Hackers can sell large batches of this personal data for profit on the black market.

“Medical information can be worth ten times more than credit card numbers on the deep web. Fraudsters can use this data to create fake IDs to buy medical equipment or drugs, or combine a patient number with a false provider number and file fictional claims with insurers.

“Consumers often discover their credentials have been stolen a long time after fraudsters have used their personal medical ID to impersonate them and obtain health services.”

Credit card data theft, on the other hand, can be quickly reported to banks, which can act immediately.

The exact details of the attack and how much data was accessed remain unclear for now, but ransomware appears to be at the heart of the problem.

As ransomware attacks tend to rely on some degree of social engineering, people should take care to avoid opening any email messages that look in any way suspicious.

Kaspersky also recommends visiting No More Ransom, a joint initiative created to help victims of ransomware retrieve their encrypted data without having to pay the criminals.

“Personal data is extremely valuable and healthcare records tend to be the most prized by attackers,” says Richard Anstey, the CTO of Synchronoss.

“Add to that the rise of crypto-currencies and medium of the Dark Web and you have a perfect storm for malicious actors to trade in this type of data. We are in an especially vulnerable time because of the early stage of adoption of electronic health records.”