Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

Cyberattacks are now killing patients not just crashing systems

For years, the cost of a cyberattack was measured in dollars. This report, however, measures it in patient outcomes.

byAytun Çelebi
October 21, 2025
in Research

A new report confirms what many in healthcare have feared: cyberattacks are no longer just an IT problem; they are a direct threat to patient safety. The fourth annual report, titled “Cyber Insecurity in Healthcare: The Cost and Impact on Patient Safety and Care 2025,” was released today by the cybersecurity firm Proofpoint and the Ponemon Institute. After surveying 677 U.S. healthcare IT professionals, the findings are stark: 72% of healthcare organizations that were attacked reported a resulting disruption to patient care, up from 69% last year. This matters because “disruption” is a mild word for what’s happening. The report links these attacks to increased complications in medical procedures, longer hospital stays, and even higher patient mortality rates.

The high cost of a security breach

For years, the cost of a cyberattack was measured in dollars. This report, however, measures it in patient outcomes. The data paints a grim picture of a sector under constant siege, with 93% of organizations experiencing at least one cyberattack in the past year, at an average of 43 attacks per organization.

Think of it this way: a hospital’s network going down isn’t just an “operational nuisance.” It’s a direct threat to your health. When systems are compromised, the consequences are immediate and severe:

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

  • 54% of organizations reported an increase in medical procedure complications.
  • 53% saw patient stays get longer.
  • 29% reported that mortality rates rose as a direct result of the cyberattack.

While the average cost of the most significant attack dropped slightly to $3.9 million, ransom payments are climbing. The average ransom paid by hospitals jumped to $1.2 million, a 60% increase from 2022.

Not all attacks are created equal

The researchers drilled down into which specific types of attacks cause the most harm. It turns out the biggest threat isn’t always the one you hear about most.

  • Supply chain attacks: While less common, these were the most likely to impact patient care. When an attack hits a third-party vendor, 87% of hospitals reported a disruption to patient services.
  • Business email compromise (BEC): This is when a scammer impersonates a doctor or administrator via email. It was the attack most likely to cause delays in procedures and tests that resulted in poor outcomes (65%).
  • Ransomware: This was the top cause of longer hospital stays (67%) and forced hospitals to divert or transfer patients to other facilities (50%).
  • Cloud/account compromise: This was the most common attack, hitting 72% of organizations. Alarmingly, 36% of those who experienced this attack reported higher mortality rates.

The problem is human

So, who’s to blame? Hackers are the obvious answer, but the report points to a more complicated internal problem: us.

The study found that 96% of organizations had at least two incidents of sensitive data being lost or stolen in the last two years. The main causes weren’t sophisticated hacks but simple human error: 35% were due to employees failing to follow policies, and 25% were from employees unintentionally sending patient data to the wrong person via email.

This isn’t just a privacy issue; it’s a safety one. In 55% of these data loss incidents, patient care was disrupted. Of that group, a shocking 54% saw increased mortality rates.

What’s the fix?

Here’s the real twist: the biggest roadblock to fixing this isn’t money. Budgets for IT security are up. The real problem, according to the survey, is a lack of in-house expertise (43%) and an absence of clear leadership (40%).

“This year’s findings are a wake-up call for the healthcare industry,” said Dr. Larry Ponemon, founder of the Ponemon Institute. “The root cause of many incidents lies in human factors—negligence, insider risk, and gaps in cyber awareness.”

The report makes it clear that healthcare organizations must stop treating cybersecurity as a back-office IT issue. As Ryan Witt of Proofpoint put it, “Patient safety is inseparable from cyber safety.” The next steps must be “human-centric,” focusing on better training and smarter


Featured image credit

Tags: cyberattacks

Related Posts

Gen Z workers are telling AI things they’ve never told a human

Gen Z workers are telling AI things they’ve never told a human

October 20, 2025
MIT researchers have built an AI that teaches itself how to learn

MIT researchers have built an AI that teaches itself how to learn

October 20, 2025
Apple builds an AI “engineering team” that finds and fixes bugs on its own

Apple builds an AI “engineering team” that finds and fixes bugs on its own

October 17, 2025
Graphite: 52% of new content is AI-generated

Graphite: 52% of new content is AI-generated

October 17, 2025
Just 250 bad documents can poison a massive AI model

Just 250 bad documents can poison a massive AI model

October 15, 2025
71% of workers are using rogue AI tools at work, Microsoft warns

71% of workers are using rogue AI tools at work, Microsoft warns

October 14, 2025

LATEST NEWS

AWS outage: A complete list of every site and app that went down

Facebook’s new AI tool will scan your camera roll

Google will discontinue this once fancy project and here’s why

Wikipedia’s human traffic drops 8% as AI takes the wheel

WhatsApp tests monthly message cap to fight spam

How one woman beat eviction court using ChatGPT and Perplexity

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Policy.