Menu
Browse

Cyber Incident Victim: Valisana

Date:

Jul 2024

Location:

Belgium

Summary

Valisana experienced a ransomware attack compromising its IT systems, prompting immediate containment measures and collaboration with authorities and cybersecurity experts to assess the breach and restore operations. The organization maintained patient care continuity through alternative procedures at Valida and I.P.I. facilities while prioritizing data security and transparency, committing to regular updates via official channels. It acknowledged potential concerns regarding personal data protection and emphasized ongoing efforts to enhance security infrastructure to prevent future incidents.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

On July 20, 2024, Valisana, a healthcare provider operating neuro-locomotor rehabilitation (Valida) and psychiatric services (Sanatia) across multiple facilities, experienced a confirmed ransomware attack. The incident disrupted the organization's IT systems, prompting immediate containment measures to protect patient data. Valisana engaged cybersecurity experts and relevant authorities to investigate the attack's scope and initiate system restoration efforts. Despite the operational disruption, the organization maintained patient care continuity through alternative procedures at its Valida polyclinic and Institut Psychothérapeutique Intégré (I.P.I.) locations. No specific technical details about the attack vector, compromised systems, or data exfiltration were disclosed in the public statement.

Cyber Incident Image

The attack prompted Valisana to prioritize transparency, committing to regular updates via its website and internal channels for patients, staff, and the public. While explicitly acknowledging concerns about personal data protection, the organization affirmed that patient information security and confidentiality remained paramount. Operational impacts included the implementation of alternative care protocols across its three psychiatric facilities—a psychiatric clinic, day center, and psychiatric care home—alongside its neuro-rehabilitation services. Valisana publicly recognized staff efforts in managing the incident and reiterated plans to strengthen security systems to prevent future attacks. The organization did not disclose ransom payment status, data breach specifics, or detailed restoration timelines in its initial communication.

Sources
Sources available to members
1 source