• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

美国相邻急诊部因勒索软件攻击而中断。

Ransomware Attack Associated With Disruptions at Adjacent Emergency Departments in the US.

机构信息

Department of Emergency Medicine, University of California, San Diego.

Department of Biomedical Informatics, University of California, San Diego.

出版信息

JAMA Netw Open. 2023 May 1;6(5):e2312270. doi: 10.1001/jamanetworkopen.2023.12270.

DOI:10.1001/jamanetworkopen.2023.12270
PMID:37155166
原文链接:https://pmc.ncbi.nlm.nih.gov/articles/PMC10167570/
Abstract

IMPORTANCE

Cyberattacks on health care delivery organizations are increasing in frequency and sophistication. Ransomware infections have been associated with significant operational disruption, but data describing regional associations of these cyberattacks with neighboring hospitals have not been previously reported, to our knowledge.

OBJECTIVE

To examine an institution's emergency department (ED) patient volume and stroke care metrics during a month-long ransomware attack on a geographically proximal but separate health care delivery organization.

DESIGN, SETTING, AND PARTICIPANTS: This before and after cohort study compares adult and pediatric patient volume and stroke care metrics of 2 US urban academic EDs in the 4 weeks prior to the ransomware attack on May 1, 2021 (April 3-30, 2021), as well as during the attack and recovery (May 1-28, 2021) and 4 weeks after the attack and recovery (May 29 to June 25, 2021). The 2 EDs had a combined mean annual census of more than 70 000 care encounters and 11% of San Diego County's total acute inpatient discharges. The health care delivery organization targeted by the ransomware constitutes approximately 25% of the regional inpatient discharges.

EXPOSURE

A month-long ransomware cyberattack on 4 adjacent hospitals.

MAIN OUTCOMES AND MEASURES

Emergency department encounter volumes (census), temporal throughput, regional diversion of emergency medical services (EMS), and stroke care metrics.

RESULTS

This study evaluated 19 857 ED visits at the unaffected ED: 6114 (mean [SD] age, 49.6 [19.3] years; 2931 [47.9%] female patients; 1663 [27.2%] Hispanic, 677 [11.1%] non-Hispanic Black, and 2678 [43.8%] non-Hispanic White patients) in the preattack phase, 7039 (mean [SD] age, 49.8 [19.5] years; 3377 [48.0%] female patients; 1840 [26.1%] Hispanic, 778 [11.1%] non-Hispanic Black, and 3168 [45.0%] non-Hispanic White patients) in the attack and recovery phase, and 6704 (mean [SD] age, 48.8 [19.6] years; 3326 [49.5%] female patients; 1753 [26.1%] Hispanic, 725 [10.8%] non-Hispanic Black, and 3012 [44.9%] non-Hispanic White patients) in the postattack phase. Compared with the preattack phase, during the attack phase, there were significant associated increases in the daily mean (SD) ED census (218.4 [18.9] vs 251.4 [35.2]; P < .001), EMS arrivals (1741 [28.8] vs 2354 [33.7]; P < .001), admissions (1614 [26.4] vs 1722 [24.5]; P = .01), patients leaving without being seen (158 [2.6] vs 360 [5.1]; P < .001), and patients leaving against medical advice (107 [1.8] vs 161 [2.3]; P = .03). There were also significant associated increases during the attack phase compared with the preattack phase in median waiting room times (21 minutes [IQR, 7-62 minutes] vs 31 minutes [IQR, 9-89 minutes]; P < .001) and total ED length of stay for admitted patients (614 minutes [IQR, 424-1093 minutes] vs 822 minutes [IQR, 497-1524 minutes]; P < .001). There was also a significant increase in stroke code activations during the attack phase compared with the preattack phase (59 vs 102; P = .01) as well as confirmed strokes (22 vs 47; P = .02).

CONCLUSIONS AND RELEVANCE

This study found that hospitals adjacent to health care delivery organizations affected by ransomware attacks may see increases in patient census and may experience resource constraints affecting time-sensitive care for conditions such as acute stroke. These findings suggest that targeted hospital cyberattacks may be associated with disruptions of health care delivery at nontargeted hospitals within a community and should be considered a regional disaster.

摘要

重要性

针对医疗保健提供组织的网络攻击频率和复杂程度不断增加。勒索软件感染与重大运营中断有关,但据我们所知,以前没有报告过这些网络攻击与附近医院之间的区域关联的数据。

目的

在地理位置邻近但分开的医疗保健提供组织遭受长达一个月的勒索软件攻击期间,检查一家机构的急诊部 (ED) 患者量和中风护理指标。

设计、设置和参与者:这项在两个美国城市学术 ED 进行的前后队列研究比较了 2021 年 5 月 1 日(4 月 3 日至 30 日)勒索软件攻击前四周、攻击和恢复期(5 月 1 日至 28 日)以及攻击和恢复期后四周(5 月 29 日至 6 月 25 日)期间,这两个 ED 的成人和儿科患者量和中风护理指标。这两个 ED 的年度平均就诊量超过 70000 次,占圣地亚哥县所有急性住院出院量的 11%。受勒索软件攻击的医疗保健提供组织约占该地区住院出院量的 25%。

暴露

对 4 家相邻医院进行为期一个月的勒索软件网络攻击。

主要结果和措施

急诊部就诊量(普查)、时间吞吐量、紧急医疗服务 (EMS) 的区域转移以及中风护理指标。

结果

这项研究评估了未受影响的 ED 的 19857 次 ED 就诊:在攻击前阶段有 6114 次(平均 [标准差] 年龄,49.6 [19.3] 岁;2931 [47.9%] 女性患者;1663 [27.2%] 西班牙裔、677 [11.1%] 非西班牙裔黑人、2678 [43.8%] 非西班牙裔白人患者);在攻击和恢复期有 7039 次(平均 [标准差] 年龄,49.8 [19.5] 岁;3377 [48.0%] 女性患者;1840 [26.1%] 西班牙裔、778 [11.1%] 非西班牙裔黑人、3168 [45.0%] 非西班牙裔白人患者);在攻击和恢复期后有 6704 次(平均 [标准差] 年龄,48.8 [19.6] 岁;3326 [49.5%] 女性患者;1753 [26.1%] 西班牙裔、725 [10.8%] 非西班牙裔黑人、3012 [44.9%] 非西班牙裔白人患者)。与攻击前阶段相比,在攻击阶段,每日平均(标准差)ED 普查(218.4 [18.9] 与 251.4 [35.2];P <.001)、EMS 到达(1741 [28.8] 与 2354 [33.7];P <.001)、入院(1614 [26.4] 与 1722 [24.5];P =.01)、未就诊离开的患者(158 [2.6] 与 360 [5.1];P <.001)和未经医嘱离开的患者(107 [1.8] 与 161 [2.3];P =.03)显著增加。与攻击前阶段相比,在攻击阶段,等候室中位数时间(21 分钟 [IQR,7-62 分钟] 与 31 分钟 [IQR,9-89 分钟];P <.001)和入院患者 ED 总住院时间(614 分钟 [IQR,424-1093 分钟] 与 822 分钟 [IQR,497-1524 分钟];P <.001)也显著增加。在攻击阶段,激活中风代码的次数也明显增加(59 次与 102 次;P =.01),确认中风的次数也增加(22 次与 47 次;P =.02)。

结论和相关性

这项研究发现,受勒索软件攻击影响的医疗保健提供组织附近的医院可能会增加患者普查量,并可能面临影响急性中风等情况的时间敏感护理的资源限制。这些发现表明,针对特定医院的网络攻击可能与社区内非目标医院的医疗保健提供中断有关,应被视为区域性灾难。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/60a0/10167570/5235a2ee885c/jamanetwopen-e2312270-g002.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/60a0/10167570/04a8fa892d8d/jamanetwopen-e2312270-g001.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/60a0/10167570/5235a2ee885c/jamanetwopen-e2312270-g002.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/60a0/10167570/04a8fa892d8d/jamanetwopen-e2312270-g001.jpg
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/60a0/10167570/5235a2ee885c/jamanetwopen-e2312270-g002.jpg

相似文献

1
Ransomware Attack Associated With Disruptions at Adjacent Emergency Departments in the US.美国相邻急诊部因勒索软件攻击而中断。
JAMA Netw Open. 2023 May 1;6(5):e2312270. doi: 10.1001/jamanetworkopen.2023.12270.
2
Ransomware Cyberattack Associated With Cardiac Arrest Incidence and Outcomes at Untargeted, Adjacent Hospitals.与非目标相邻医院心脏骤停发生率及转归相关的勒索软件网络攻击
Crit Care Explor. 2024 Apr 10;6(4):e1079. doi: 10.1097/CCE.0000000000001079. eCollection 2024 Apr.
3
Trends in Ransomware Attacks on US Hospitals, Clinics, and Other Health Care Delivery Organizations, 2016-2021.2016-2021 年美国医院、诊所和其他医疗保健提供组织遭受勒索软件攻击的趋势。
JAMA Health Forum. 2022 Dec 2;3(12):e224873. doi: 10.1001/jamahealthforum.2022.4873.
4
Door-in-Door-out Times for Interhospital Transfer of Patients With Stroke.门到门时间在卒中患者院内转运中的作用。
JAMA. 2023 Aug 15;330(7):636-649. doi: 10.1001/jama.2023.12739.
5
Association of Race/Ethnicity With Emergency Department Destination of Emergency Medical Services Transport.种族/民族与紧急医疗服务转运的急诊科去向的关联。
JAMA Netw Open. 2019 Sep 4;2(9):e1910816. doi: 10.1001/jamanetworkopen.2019.10816.
6
What happens to rural hospitals during a ransomware attack? Evidence from Medicare data.勒索软件攻击期间农村医院会发生什么?来自医疗保险数据的证据。
J Rural Health. 2024 Sep;40(4):728-737. doi: 10.1111/jrh.12834. Epub 2024 Mar 17.
7
Prevalence of Behavioral Flags in the Electronic Health Record Among Black and White Patients Visiting the Emergency Department.电子健康记录中黑人和白人患者行为特征的流行情况。
JAMA Netw Open. 2023 Jan 3;6(1):e2251734. doi: 10.1001/jamanetworkopen.2022.51734.
8
Association of emergency department length of stay with safety-net status.急诊科停留时间与安全网状态的关联。
JAMA. 2012 Feb 1;307(5):476-82. doi: 10.1001/jama.2012.41.
9
Sociodemographic Disparities in Queue Jumping for Emergency Department Care.社会人口学差异与急诊插队现象
JAMA Netw Open. 2023 Jul 3;6(7):e2326338. doi: 10.1001/jamanetworkopen.2023.26338.
10
Patient Sociodemographics and Comorbidities and Birth Hospital Characteristics Associated With Postpartum Emergency Department Care.患者人口统计学特征和合并症以及分娩医院特征与产后急诊科护理相关。
JAMA Netw Open. 2023 Mar 1;6(3):e233927. doi: 10.1001/jamanetworkopen.2023.3927.

引用本文的文献

1
Prompt injection attacks on vision-language models for surgical decision support.针对用于手术决策支持的视觉语言模型的提示注入攻击。
medRxiv. 2025 Jul 23:2025.07.16.25331645. doi: 10.1101/2025.07.16.25331645.
2
Patient Care Technology Disruptions Associated With the CrowdStrike Outage.与CrowdStrike中断相关的患者护理技术中断
JAMA Netw Open. 2025 Jul 1;8(7):e2530226. doi: 10.1001/jamanetworkopen.2025.30226.
3
Media Framing and Portrayals of Ransomware Impacts on Informatics, Employees, and Patients: Systematic Media Literature Review.

本文引用的文献

1
Trends in Ransomware Attacks on US Hospitals, Clinics, and Other Health Care Delivery Organizations, 2016-2021.2016-2021 年美国医院、诊所和其他医疗保健提供组织遭受勒索软件攻击的趋势。
JAMA Health Forum. 2022 Dec 2;3(12):e224873. doi: 10.1001/jamahealthforum.2022.4873.
2
Responding to the Escalating Cybersecurity Threat to Health Care.应对医疗保健领域不断升级的网络安全威胁。
N Engl J Med. 2022 Sep 1;387(9):767-770. doi: 10.1056/NEJMp2205144. Epub 2022 Aug 27.
3
Crisis Standards of Care: Cyber Attack During a Pandemic.危机护理标准:大流行期间的网络攻击。
媒体对勒索软件对信息学、员工和患者影响的框架构建与描述:系统性媒体文献综述
J Med Internet Res. 2025 Apr 8;27:e59231. doi: 10.2196/59231.
4
Characteristics of short-term acute care hospitals that experienced a ransomware attack from 2016 to 2021.2016年至2021年期间遭受勒索软件攻击的短期急症医院的特征。
Health Aff Sch. 2023 Aug 28;1(3):qxad037. doi: 10.1093/haschl/qxad037. eCollection 2023 Sep.
5
Ransomware Cyberattack Associated With Cardiac Arrest Incidence and Outcomes at Untargeted, Adjacent Hospitals.与非目标相邻医院心脏骤停发生率及转归相关的勒索软件网络攻击
Crit Care Explor. 2024 Apr 10;6(4):e1079. doi: 10.1097/CCE.0000000000001079. eCollection 2024 Apr.
Ann Intern Med. 2021 May;174(5):713-714. doi: 10.7326/M20-7191. Epub 2021 Jan 19.
4
Healthcare cyber-attacks and the COVID-19 pandemic: an urgent threat to global health.医疗保健网络攻击和 COVID-19 大流行:对全球健康的紧迫威胁。
Int J Qual Health Care. 2021 Feb 20;33(1). doi: 10.1093/intqhc/mzaa117.
5
The challenges of cybersecurity in health care: the UK National Health Service as a case study.医疗保健领域网络安全的挑战:以英国国家医疗服务体系为例
Lancet Digit Health. 2019 May;1(1):e10-e12. doi: 10.1016/S2589-7500(19)30005-6. Epub 2019 May 2.
6
Cybersecurity Challenges and the Academic Health Center: An Interactive Tabletop Simulation for Executives.网络安全挑战与学术健康中心:面向高管的互动桌面模拟。
Acad Med. 2021 Jun 1;96(6):850-853. doi: 10.1097/ACM.0000000000003859.
7
Cybersecurity Risks in a Pandemic.大流行中的网络安全风险。
J Med Internet Res. 2020 Sep 17;22(9):e23692. doi: 10.2196/23692.
8
Healthcare Challenges in the Era of Cybersecurity.网络安全时代的医疗保健挑战。
Health Secur. 2020 May/Jun;18(3):228-231. doi: 10.1089/hs.2019.0123.
9
Cyber Disaster Medicine: A New Frontier for Emergency Medicine.网络灾难医学:急诊医学的新前沿。
Ann Emerg Med. 2020 May;75(5):642-647. doi: 10.1016/j.annemergmed.2019.11.011. Epub 2020 Jan 17.
10
Guidelines for the Early Management of Patients With Acute Ischemic Stroke: 2019 Update to the 2018 Guidelines for the Early Management of Acute Ischemic Stroke: A Guideline for Healthcare Professionals From the American Heart Association/American Stroke Association.急性缺血性脑卒中患者早期管理指南:2018 年急性缺血性脑卒中早期管理指南的更新:美国心脏协会/美国卒中协会发布的医疗保健专业人员指南。
Stroke. 2019 Dec;50(12):e344-e418. doi: 10.1161/STR.0000000000000211. Epub 2019 Oct 30.