{"id":51409,"date":"2023-04-11T14:13:48","date_gmt":"2023-04-11T14:13:48","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/34512\/Illinois-Hospital-Forced-Into-EHR-Downtime-After-Cyberattack.html"},"modified":"2023-04-11T14:13:48","modified_gmt":"2023-04-11T14:13:48","slug":"illinois-hospital-forced-into-ehr-downtime-after-cyberattack","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/","title":{"rendered":"Illinois Hospital Forced Into EHR Downtime After Cyberattack"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/04\/041023_electronic_health_records.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>Sarah D. Culbertson Memorial Hospital in Illinois is the latest hospital to be forced into electronic health record downtime procedures after a cyberattack. On its social media page, officials notified patients that a \u201cnetwork disruption\u201d found on March 30 forced its systems offline.<\/p>\n<p>The cyberattack \u201cdisabled access to most functions.\u201d The hospital\u2019s response team is continuing to investigate with support from third-party specialists as it works to \u201cunderstand the full depth of the intrusion.\u201d<\/p>\n<p>After a week of network downtime, officials say they\u2019ve been able to restore a portion of the impacted systems. Full access to its critical service systems is expected to be restored by April 11.<\/p>\n<p>The hospital has already implemented a host of security improvements, alongside its investigation and recovery efforts. Its community notice doesn\u2019t include any patient impacts, like care delays and limited comments on the post, which means there are no responses from patients on possible disruptions.<\/p>\n<h2>RansomHouse group threatens to leak data in Barcelona attack<\/h2>\n<p>The Culbertson Memorial news followed an update from the Hospital Clinic of Barcelona Medical Director Antoni Castells on the ongoing outages caused by a RansomHouse cyberattack one month ago. As <a href=\"https:\/\/www.scmagazine.com\/news\/ransomware\/barcelona-hospital-experiencing-care-delays-after-ransomhouse-attack\" target=\"_blank\" rel=\"noreferrer noopener\">SC Media previously reported<\/a>, the March 4 hack crippled the hospital\u2019s emergency room, laboratories and clinics.<\/p>\n<p>Pharmacies at three main facilities and other external clinics were also impacted, while nearly 3,000 care appointments and 150 non-urgent surgeries at one of the city\u2019s primary hospitals were delayed.<\/p>\n<p>While the hospital continues its recovery efforts, the cybercriminals are threatening to leak 4GB of data tied to patients with infectious data, according to local media outlets.&nbsp;RansomHouse is working to strong-arm the hospital into paying a $4.5 million ransom, after encrypting the hospital\u2019s virtual data center and its information.<\/p>\n<p>As a result, officials say they\u2019ve been unable to recover patient data or add new health information into the system.<\/p>\n<p>The threat actors have already published some data they claimed to have stolen from the provider, ramping up the extortion attempts by threatening to publish information tied to infectious disease treatments, including the hospital\u2019s use of experimental drugs tied to senior care. RansomHouse is simultaneously threatening the police after law enforcement efforts to block their site.<\/p>\n<p>But no amount of extortion will coerce a ransom demand. According to the Secretary of Telecommunications and Digital Transformation Sergi Marc\u00e9n: &#8220;There is no type of negotiation; the government will not pay a penny.&#8221;<\/p>\n<p>Officials also shared an update on the hack, hospital outage and recovery efforts. The initial findings suggest the attack was likely prompted after the threat actors targeted hospital and government staff. The investigation found over 600 emails were sent to workforce members.<\/p>\n<p>And while the hospital has maintained operations, at least 300 surgical operations, 11,000 external visits, and nearly 4,000 appointments have been rescheduled during the outages.<\/p>\n<p>Healthcare cyberattacks that lead to network downtime cause an average of $1 million to $2 million in losses for each day of outages. The latest example was seen after the monthlong outage caused by the cyberattack on <a href=\"https:\/\/www.scmagazine.com\/news\/ransomware\/commonspirit-health-cyberattack-network-outage-cost-150m\" target=\"_blank\" rel=\"noreferrer noopener\">CommonSpirit Health<\/a>. Its financial report revealed the security incident had a $150 million price tag due to lost revenue and recovery costs.<\/p>\n<p>Unlike other industries, <a href=\"https:\/\/www.scmagazine.com\/analysis\/ransomware\/report-ransomware-is-a-patient-mortality-risk-driven-by-covid-third-party-vendors\" target=\"_blank\" rel=\"noreferrer noopener\">hospital cyberattacks don\u2019t just cause<\/a> reputational and financial harm. Network outages cause patient care impacts and an <a href=\"https:\/\/www.scmagazine.com\/feature\/risk-management\/healthcare-cant-ignore-ransomwares-impact-on-care-quality-patient-morbidity\" target=\"_blank\" rel=\"noreferrer noopener\">increase in patient morbidity<\/a>.<\/p>\n<h2>Hackers stole data before Tallahassee Memorial HealthCare cyberattack<\/h2>\n<p>Tallahassee Memorial HealthCare recently informed 20,376 patients that their health data was stolen, prior to the deployment of a cyberattack on Feb. 3.<\/p>\n<p>As<a href=\"https:\/\/www.scmagazine.com\/news\/incident-response\/tallahassee-memorial-health-diverting-patients-over-security-issue-downtime\" target=\"_blank\" rel=\"noreferrer noopener\"> reported by SC Media<\/a>, the hospital was forced into EHR downtime after an \u201cIT security issue\u201d discovered in February. The system outages forced the provider to reschedule all non-emergency patient appointments and the cancellation of all non-emergency surgical and outpatient procedures.<\/p>\n<p>Initially, the hospital was only able to accept \u201cLevel 1&#8243; trauma patients in its emergency department.<\/p>\n<p>Its recent breach notice provides further insights into the incident. The subsequent investigation found the threat actors first gained access to the network a week before the cyberattack on Jan. 26 and used the dwell time to exfiltrate \u201ccertain files\u201d from its systems.<\/p>\n<p>The stolen data varied by patient but could include names, contact details, Social Security numbers, dates of birth,health insurance information, medical record and patient account numbers, and treatment information.<\/p>\n<p>TMH is continuing to enhance its systems and data security to prevent a recurrence.<\/p>\n<p><a href=\"https:\/\/www.scmagazine.com\/analysis\/breach\/maryland-hospital-facing-outages-after-significant-ransomware-attack\" target=\"_blank\" rel=\"noreferrer noopener\">Atlantic General Hospital<\/a>, which reported a similar outage and cyberattack a week before the TMH hack, recently issued a near-identical breach notice to 26,591 of its patients.<\/p>\n<h2>Monument latest health app to report third-party data sharing<\/h2>\n<p>Alcohol treatment platform Monument issued a breach notice to its users, reporting that the use of pixels on its app led to the disclosure of their personal and health information to tech and social media giants. Monument also owns the health app Tempest and is affiliated with Live Life Now Health Group and Purdy Medical.<\/p>\n<p>Monument used pixels and similar tracking technologies on its sites, which were tied to Meta, Google, Bing, Pinterest, and other third parties. After the<a href=\"https:\/\/www.scmagazine.com\/analysis\/privacy\/hhs-warning-to-providers-use-of-pixel-tracking-tech-without-baa-violates-hipaa\" target=\"_blank\" rel=\"noreferrer noopener\"> Department of Health and Human Services<\/a> warned healthcare entities of the risks posed by Pixels, Monument launched a review.<\/p>\n<p>On Feb. 6, the investigation found that user data was shared \u201cwith those third parties without the appropriate authorization, consent, and agreements required by law\u201d between November 2017 and late 2022, for Tempest users, and January 2020 and late 2022, for Monument users.<\/p>\n<p>The data could include dates of birth, user photographs, contact information, email addresses, unique digital IDs, insurance member IDs, URLs, selected treatment services or plans, health assessment or survey responses, appointment details, and associated health data. Digital footprints may have also been disclosed.<\/p>\n<p>The pixels were full disconnected by February 2023.<\/p>\n<p>Monument joins a growing list of <a href=\"https:\/\/www.scmagazine.com\/analysis\/privacy\/cedars-sinai-cerebral-telehealth-companies-among-latest-accused-of-data-sharing-with-meta\" target=\"_blank\" rel=\"noreferrer noopener\">companies and healthcare providers<\/a> to report pixel-related disclosure of user data to third parties. It&#8217;s unclear whether Monument leadership will face similar FTC enforcement <a href=\"https:\/\/www.scmagazine.com\/analysis\/breach\/ftc-slaps-goodrx-with-1-5m-fine-for-sharing-health-data-with-facebook-others\" target=\"_blank\" rel=\"noreferrer noopener\">actions like GoodRx <\/a>and <a href=\"https:\/\/www.scmagazine.com\/news\/privacy\/betterhelp-pay-ftc-7m-privacy-failures-unfair-practices\" target=\"_blank\" rel=\"noreferrer noopener\">BetterHelp after egregious<\/a> third-party data disclosures.<\/p>\n<p>Third-party data sharing via pixels is a <a href=\"https:\/\/www.scmagazine.com\/analysis\/privacy\/most-hospital-websites-routinely-transfer-patient-data-via-tracking-tools\" target=\"_blank\" rel=\"noreferrer noopener\">massive issue in the healthcare sector.<\/a> Just last week, data confirmed nearly all hospitals use third-party tracking code that routinely transfers patient data to large tech companies, social media giants, data brokers, and advertising firms.<\/p>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/34512\/Illinois-Hospital-Forced-Into-EHR-Downtime-After-Cyberattack.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":51410,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[277],"tags":[8372],"class_list":["post-51409","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-blogs","tag-headlinehackermalwarecybercrimefraudcryptography"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-04-11T14:13:48+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/04\/041023_electronic_health_records.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Illinois Hospital Forced Into EHR Downtime After Cyberattack\",\"datePublished\":\"2023-04-11T14:13:48+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/\"},\"wordCount\":1032,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg\",\"keywords\":[\"headline,hacker,malware,cybercrime,fraud,cryptography\"],\"articleSection\":[\"CyberSecurity Blogs\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/\",\"name\":\"Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg\",\"datePublished\":\"2023-04-11T14:13:48+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg\",\"width\":1280,\"height\":800},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,hacker,malware,cybercrime,fraud,cryptography\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinehackermalwarecybercrimefraudcryptography\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Illinois Hospital Forced Into EHR Downtime After Cyberattack\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/","og_locale":"en_US","og_type":"article","og_title":"Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-04-11T14:13:48+00:00","og_image":[{"url":"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/04\/041023_electronic_health_records.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Illinois Hospital Forced Into EHR Downtime After Cyberattack","datePublished":"2023-04-11T14:13:48+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/"},"wordCount":1032,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/04\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg","keywords":["headline,hacker,malware,cybercrime,fraud,cryptography"],"articleSection":["CyberSecurity Blogs"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/","url":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/","name":"Illinois Hospital Forced Into EHR Downtime After Cyberattack 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/04\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg","datePublished":"2023-04-11T14:13:48+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/04\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/04\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack.jpg","width":1280,"height":800},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/illinois-hospital-forced-into-ehr-downtime-after-cyberattack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,hacker,malware,cybercrime,fraud,cryptography","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinehackermalwarecybercrimefraudcryptography\/"},{"@type":"ListItem","position":3,"name":"Illinois Hospital Forced Into EHR Downtime After Cyberattack"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/51409","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=51409"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/51409\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/51410"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=51409"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=51409"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=51409"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}