Epidemic? The Attack Surface of German Hospitals during the COVID-19 Pandemic

01/20/2021
by   Johannes Klick, et al.
0

In our paper we analyze the attack surface of German hospitals and healthcare providers in 2020 during the COVID-19 Pandemic. The analysis looked at the publicly visible attack surface utilizing a Distributed Cyber Recon System, utilizing distributed Internet scanning, Big Data methods and scan data of 1,483 GB from more than 89 different global Internet scans. From the 1,555 identified German clinical entities, security posture analysis was conducted by looking at more than 13,000 service banners for version identification and subsequent CVE-based vulnerability identification. Primary analysis shows that 32 percent of the analyzed services were determined as vulnerable to various degrees and 36 percent of all hospitals showed numerous vulnerabilities. Further resulting vulnerability statistics were mapped against size of organization and hospital bed count.

READ FULL TEXT

page 10

page 11

page 12

page 13

research
06/21/2020

Cyber Security in the Age of COVID-19: A Timeline and Analysis of Cyber-Crime and Cyber-Attacks during the Pandemic

The COVID-19 pandemic was a remarkable unprecedented event which altered...
research
10/12/2021

EpiBeds: Data informed modelling of the COVID-19 hospital burden in England

The first year of the COVID-19 pandemic put considerable strain on the n...
research
12/02/2021

A Grounded Theory Based Approach to Characterize Software Attack Surfaces

The notion of Attack Surface refers to the critical points on the bounda...
research
09/12/2021

Who shapes crisis communication on Twitter? An analysis of influential German-language accounts during the COVID-19 pandemic

Twitter is becoming an increasingly important platform for disseminating...
research
03/11/2020

Scan Correlation – Revealing distributed scan campaigns

Public networks are exposed to port scans from the Internet. Attackers s...
research
06/17/2020

Never Trust Your Victim: Weaponizing Vulnerabilities in Security Scanners

The first step of every attack is reconnaissance, i.e., to acquire infor...
research
04/22/2021

Methodology for Detecting Cyber Intrusions in e-Learning Systems during COVID-19 Pandemic

In the scenarios of specific conditions and crises such as the coronavir...

Please sign up or login with your details

Forgot password? Click here to reset