Security

Cyber-crime

Another 'major cyber incident' at a UK hospital, outpatients asked to stay away

Third time this year an NHS unit's IT systems have come under attack


A UK hospital is declaring a "major incident," cancelling all outpatient appointments due to "cybersecurity reasons."

The Wirral University Teaching Hospital NHS Trust, located in North West England, said the so-called "incident" affects the whole Trust, which oversees Wirral Women and Children's Hospital, Clatterbridge Hospital, and Arrowe Park Hospital.

Although the tech problems began on Monday, officials confirmed to The Register it is still dealing with the fallout as of Tuesday morning. 

All outpatient appointments were canceled on Monday and the same decision was made today, according to Arrowe Park and Clatterbridge's social media posting. All patients whose appointments were canceled will be contacted to rearrange them.

Officials remain tight-lipped about the specifics, although locals were asked to only attend the hospitals' emergency departments for genuine emergencies which include chest pains, choking, and serious injuries.

The Register also understands the issue is affecting the wider hospital departments, not just accident and emergency - exactly how it is manifesting is still under wraps.

We asked a Wirral University Teaching Hospital foundation trust spokesperson whether the incident involved ransomware, but they deferred to the official statement:

A major incident has been declared at the Trust for cyber security reasons.

Our business continuity processes are in place, and our priority remains ensuring patient safety. All outpatient appointments scheduled today are canceled. We apologize for any inconvenience and we will contact our patients as soon as possible to rearrange.

We urge all members of the public to attend the Emergency Department only for genuine emergencies. For non-urgent health concerns, please use NHS 111, visit a walk-in center, urgent treatment center, your GP, or pharmacist.

The Trust added that business continuity processes are in place. The Register pressed the Trust's officials for more details, such as whether outside help has been drafted, whether the NCSC/NCA were informed, and for how long the issues are expected to persist, and we will update the story as we learn more.

It has been a tough year for the NHS on the cybersecurity front. Two major attacks hit NHS services in England and Scotland this year, most recently in London with Qilin's ransomware strike on pathology services provider Synnovis.

The attack was carried out in June and it wasn't until October that the NHS began saying the majority of services were back up and running. 

More than 10,000 appointments and nearly 2,000 procedures were canceled across the five-month period, which also saw numerous urgent appeals for blood donors issued due to the attack's impact on systems used for cross-matching blood transfusions. Type O-negative and Black heritage blood was particularly in demand.

Some patients were affected more than others.

The attack on Synnovis came just months after INC Ransom's hit on NHS Scotland, specifically the NHS Dumfries and Galloway board, which said it did not give in to the attackers' demands.

CEO of the Scottish health board, which oversees healthcare orgs across the Dumfries and Galloway region, Julie White said patient care wasn't disrupted as a result of the February intrusion, but acknowledged that criminals had accessed and uploaded thousands of people's data to their leak site.

INC claimed to have stolen 3TB worth of the Scottish health org's data and White confirmed in a letter to those affected that the attackers stole millions of files. She warned victims of the potential for extortion and phishing, as well as the mental health repercussions that could arise due to the data's publication. ®

Send us news
53 Comments

IT chiefs of UK's massive health service urge vendors to make public security pledge

Enormous org has been hit by ransomware again and again, on multiple fronts, over the past year

Tech suppliers asked to support single electronic health record across England

Labour health secretary’s vision for one record to rule 'em all, for each patient, set to come to market

Some English hospitals doubt Palantir's utility: We'd 'lose functionality rather than gain it'

After UK spends hundreds of millions, several say existing systems are better

Greater Manchester says its NHS analytics stack is years ahead of Palantir wares

Care board draws red lines over use of UK government-backed Federated Data Platform

One of Britain's largest health trusts says 'no ta' to Palantir-run data platform – for now

Care board defers decision to adopt national system

Uncle Sam pulls $2.4B Leidos deal to support CISA after rival alleges foul play

Nightwing claims insider intel helped secure lucrative CISA work but US says decision is unrelated

'We still have embeds in CISA': CTO of Brit cyber agency talks post-Trump relationship with US counterpart

Both agencies seem unbothered despite tech world's clear concerns for US infoseccers

Eeek! p0wned Alabama hit by unspecified 'cybersecurity event'

PLUS: Euro-cops take down investment scammers; Fancy Bear returns to Ukraine; and more

Good luck to Atos' 7th CEO and its latest biz transformation

We suspect Philippe Salle will need it, not to mention staff and customers

Britain's cyber agents and industry clash over how to tackle shoddy software

Providers argue that if end users prioritized security, they'd get it

Everyone's deploying AI, but no one's securing it – what could go wrong?

Crickets as senior security folk asked about risks at NCSC conference

CISA says SaaS providers in firing line after Commvault zero-day Azure attack

Cyberbaddies are coming for your M365 creds, US infosec agency warns