Menu
Browse

Cyber Incident Victim: CHC MontLégia

Date:

Nov 2022

Location:

Belgium

Summary

A cyberattack targeted CHC Montlégia, a hospital in Liège, causing severe operational disruption. The incident resulted in prolonged IT system downtime, with critical infrastructure remaining offline for several months following the attack. No threat actor claimed responsibility, and there was no public evidence of compromised data appearing on dark web leak sites or forums. The organization's recovery efforts extended well beyond the initial incident period, maintaining emergency protocols and reduced digital capabilities throughout the disruption. The attack highlighted significant vulnerabilities in healthcare infrastructure resilience against prolonged cyber incidents.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

The CHC Montlégia hospital in Liège experienced a cyberattack on or around November 1, 2022, disrupting its computer systems. The attack forced the hospital into an extended operational crisis, with critical IT infrastructure remaining offline for months following the incident. By February 2023, the hospital was still operating under a "red phase" designation, indicating severe ongoing disruption to normal workflows and digital services. No specific threat actor group claimed responsibility for the attack, and there was no public evidence of stolen data appearing on dark web leak sites or forums as of March 2023. The prolonged outage affected core hospital systems, though the exact scope of compromised infrastructure and specific attacker methodologies were not detailed in available reports.

Cyber Incident Image

Nearly four months post-attack, as of March 18, 2023, CHC Montlégia’s systems remained non-operational, reflecting significant recovery challenges. The incident highlighted systemic vulnerabilities in healthcare infrastructure, with recovery efforts extending far beyond initial containment phases. Hospital staff continued relying on alternative manual processes to maintain critical patient care services during the outage. The Brussels Times referenced the attack as part of broader concerns about cyber risks facing medical institutions. No further technical details regarding forensic investigations, ransom demands, or data exfiltration were publicly confirmed at the time of reporting.

Sources
Sources available to members
1 source