Skip to main content

Search site

Find podcasts, news, articles, webinars, and contributors in one search.

Cybercriminals pose as hospital finance employees, divert payments

Source: Beckers Hospital Review

Found this useful? Share it with your network

A new cybercriminal tactic targeting hospital IT help desks aims to access computer systems and divert payments by impersonating health system finance employees to request password resets and new device enrollments. The American Hospital Association (AHA) warns that once access is granted, these cybercriminals can bypass multi-factor authentication, access sensitive email accounts, redirect payments to fraudulent accounts, and insert malware. The AHA advises health systems to strengthen IT help desk protocols and employ verification methods like callback procedures, video calls, and ID verification to combat these social engineering attacks. The FBI has assisted in recovering payments if notified promptly, highlighting the ongoing threat this scheme poses.

Read Full Article

Opens on Beckers Hospital Review