• Log In
  • Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • HomePage
  • Instructor
  • Syllabus
  • Schedule
    • First Half of the Semester
      • Week 1: Course Introduction
      • Week 2: Meterpreter, Avoiding Detection, Client Side Attacks, and Auxiliary Modules
      • Week 3: Social Engineering Toolkit, SQL Injection, Karmetasploit, Building Modules in Metasploit, and Creating Exploits
      • Week 4: Porting Exploits, Scripting, and Simulating Penetration Testing
      • Week 5: Independent Study – Perform Metasploit Attack and Create Presentation
      • Week 6: Ettercap
      • Week 7: Introduction to OWASP’s WebGoat application
    • Second Half of the Semester
      • Week 8: Independent Study
      • Week 9: Introduction to Wireless Security
      • Week 10: Wireless Recon, WEP, and WPA2
      • Week 11: WPA2 Enterprise, Wireless beyond WiFi
      • Week 12: Jack the Ripper, Cain and Able, Delivery of Sample Operating Systems
      • Week 13: Independent Study – Analyze provided Operating System Samples and Create Assessment Report
      • Week 14: Deliver Assessment to Operating System Class either in person or via teleconferenc
  • Assignments
    • Analysis Reports
    • Group Project Report and Presentation
  • Webex
  • Harvard Coursepack
  • Gradebook

MIS 5212-Advanced Penetration Testing

MIS 5212 - Section 001 - Wade Mackey

Fox School of Business

Indiana Hospital Pays $55k Ransomware Ransom, Even Though They Had Backups

February 9, 2018 by Ian Riley 1 Comment

https://www.bleepingcomputer.com/news/security/hospital-pays-55k-ransomware-demand-despite-having-backups/

Pretty simple story here- the hospital determined that they’d rather not have the downtime while they restored their backups, so they just paid the ransom. While the decision makes sense, it’s definitely interesting to consider where the line is for many businesses. For a hospital where lives are on the line, speed will probably beat cost as long as it’s reasonable.

It’s also interesting to think about how much your personal and work backups would be worth… It’s easy to put a number on a work backup where you know the amount of time/cost which went into the files, but how much would your personal data be worth to you?

Filed Under: Week 01 Tagged With:

Reader Interactions

Comments

  1. Elizabeth V Calise says

    March 23, 2018 at 3:11 pm

    I always find cyber-attacks on the healthcare industry quite interesting because of the type of business it is and the data they have stored. Since the attack was not due to an employee opening a scam email, I am very curious how the ransomware spread throughout the hospital. Also, I did find it a bit comical that they were hanging up posters to notify employees to shutdown their laptops/computers. The hospital decided to pay the ransom since it was much quicker than restoring back-ups. I am wondering why it would take so long if they did choose the restore method or what was their recovery plan if something like this is to happen? Or did they have one at all? I am also wondering what their security is like or how they educate their employees regarding cyber security and attacks. Additionally, hospitals hold patients’ personal information which they need access to. Maybe from their perspective paying the ransom made the most sense, but I am hoping their security changes after experiencing this incident.

    Log in to Reply

Leave a Reply Cancel reply

You must be logged in to post a comment.

Primary Sidebar

Weekly Discussions

  • Uncategorized (10)
  • Week 01 (18)
  • Week 02 (9)
  • Week 03 (13)
  • Week 04 (17)
  • Week 05 (12)
  • Week 06 (16)
  • Week 07 (2)
  • Week 08 (8)
  • Week 09 (5)
  • Week 10 (10)
  • Week 11 (5)
  • Week 12 (5)
  • Week 13 (2)
  • Week 14 (7)

Copyright © 2025 · Magazine Pro Theme on Genesis Framework · WordPress · Log in