CSIDB logo
Incident

University of Vermont Health Network

Incident posture

Attack window
Oct 2020
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2026-01-12 12:25

Linked entities

Victim
University of Vermont Health Network
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Oct 2020
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

The University of Vermont Health Network experienced a significant system-wide network disruption following a cyberattack, impacting six hospitals across Vermont and northern New York. The incident caused an ongoing technology outage described as substantial, with no confirmed timeline for restoring normal operations at the time of reporting.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

2 techniques

Description

On October 28, 2020, the University of Vermont Health Network experienced a cyberattack that triggered a widespread network disruption across its hospital system. The incident caused what officials described as a "significant and ongoing system-wide network issue" affecting six hospitals throughout Vermont and northern New York. Network spokesperson Neal Goswami publicly confirmed the cyberattack's occurrence on October 30, two days after the initial disruption began. The health network did not immediately disclose the specific nature of the cyberattack or identify the systems targeted by the threat actors. Technical teams worked to contain the disruption while administrators developed contingency plans to maintain clinical operations during the outage. The network-wide technological failure impacted multiple facilities simultaneously, though the organization did not specify whether patient data was compromised or if ransomware was involved in the incident.

The cyberattack resulted in sustained operational challenges across the healthcare network with no confirmed restoration timeline available at the time of reporting. Hospital staff implemented manual workarounds for critical functions such as patient scheduling and medical record access to sustain clinical care delivery. Outpatient appointments faced disruptions as the network grappled with electronic system unavailability, though emergency departments remained operational throughout the incident. The prolonged outage underscored the vulnerability of healthcare infrastructure to cyber threats capable of disabling core network functions across multiple facilities. No further details emerged regarding forensic findings, attacker identification, or data breach notifications during the initial disclosure period. The health network maintained public communications through official statements while continuing restoration efforts without projecting a resolution timeframe.

Sources

Sources available to members: 1 source.

CSIDB