Menu
Browse

Cyber Incident Victim: Kingston Health Sciences Centre

Date:

Nov 2020

Location:

Canada

Summary

Kingston Health Sciences Centre experienced a cyber incident involving an online access interruption affecting internet connectivity and external-facing systems. The hospital confirmed the disruption, which sources indicated might relate to a cybersecurity breach, though no specific details about the incident's nature were disclosed. Operational impacts included temporary offline status of critical network services while the organization investigated the event.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

Kingston Health Sciences Centre (KHSC) experienced a significant disruption to its online operations beginning on or around November 4, 2020. The hospital publicly acknowledged an "online access interruption" affecting its internet connectivity and external-facing systems, which were deliberately taken offline as a precautionary measure. While KHSC's initial statement did not explicitly characterize the event as a cyberattack, an unnamed hospital source disclosed to media that the incident potentially involved a cybersecurity breach. The organization refrained from providing immediate details regarding the incident's origin, scope, or specific compromised systems, citing the ongoing nature of their investigation. This operational disruption represented a notable deviation from normal hospital functions, though KHSC did not initially disclose whether clinical operations experienced direct impacts.

Cyber Incident Image

KHSC's response centered on containment through the isolation of affected network segments, particularly those accessible from external sources. The hospital maintained public communication via a brief press release confirming the system outages but offered no timeline for restoration of services. No further technical details emerged regarding intrusion methods, threat actor attribution, or data compromise during the initial disclosure period. The investigation remained active as of the last reported update, with KHSC continuing to assess the situation without releasing additional findings to the public. The incident marked a confirmed cybersecurity event requiring institutional response, though its full operational and potential data consequences were not formally documented in available public reporting from the timeframe.

Sources
Sources available to members
1 source