CSIDB logo
Incident

Azienda Sanitaria Provinciale Messina

Incident posture

Attack window
Apr 2022
Location
Italy
Status
Historical
CIA posture
Available to members
Updated
2025-10-20 00:00

Linked entities

Victim
Azienda Sanitaria Provinciale Messina
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Apr 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A cyberattack targeted the IT systems of Azienda Sanitaria Provinciale Messina, disrupting both internal operations and public-facing services. Technical teams immediately initiated recovery efforts, though full restoration was anticipated to require several days. The organization issued a public apology for potential inconveniences caused by the incident and committed to promptly notifying citizens once systems were fully operational again.

Motives

Detailed motive labels are available to members.

2 motives

TTPs

Detailed technique labels are available to members.

5 techniques

Description

On or around April 15, 2022, the Azienda Sanitaria Provinciale di Messina (ASP Messina) experienced a disruptive cyberattack targeting its IT infrastructure. The healthcare provider publicly confirmed the incident through an official statement, disclosing that unidentified hackers had compromised its computer systems. Technical teams initiated immediate response efforts to contain the breach and restore operations, though the organization cautioned that full recovery could require multiple days to complete. The attack caused operational disruptions affecting both internal administrative functions and external-facing services critical to public healthcare delivery. ASP Messina issued a public apology for anticipated service delays and inconveniences to citizens, acknowledging the incident's impact on routine operations. No specific details regarding the attack vector, data compromise, or ransom demands were disclosed in the initial announcement.

The healthcare provider prioritized system restoration while managing service interruptions across affected departments. Technicians worked continuously to diagnose the breach's scope and implement recovery protocols, though the complexity of healthcare IT systems prolonged resolution timelines. ASP Messina maintained transparency by committing to notify the public immediately upon full system restoration, though no interim updates or revised recovery estimates were provided in the initial communication. Service disruptions persisted during the remediation period, requiring manual workarounds for certain administrative and patient care processes. The organization's statement emphasized operational recovery as the primary focus, without elaborating on preventative measures or forensic investigations into the attack's origins. Citizens reliant on ASP Messina services experienced delays and inconveniences until systems were fully reinstated following the technical team's remediation efforts.

Sources

Sources available to members: 1 source.

CSIDB