This website collects cookies to deliver better user experience. Cookie Policy
Accept
Sign In
The Wall Street Publication
  • Home
  • Trending
  • U.S
  • World
  • Politics
  • Business
    • Business
    • Economy
    • Real Estate
    • Markets
    • Personal Finance
  • Tech
  • Lifestyle
    • Lifestyle
    • Style
    • Arts
  • Health
  • Sports
  • Entertainment
Reading: Code Dark: Children’s Hospital Strives to Minimize Impact of Hacks
Share
The Wall Street PublicationThe Wall Street Publication
Font ResizerAa
Search
  • Home
  • Trending
  • U.S
  • World
  • Politics
  • Business
    • Business
    • Economy
    • Real Estate
    • Markets
    • Personal Finance
  • Tech
  • Lifestyle
    • Lifestyle
    • Style
    • Arts
  • Health
  • Sports
  • Entertainment
Have an existing account? Sign In
Follow US
© 2024 The Wall Street Publication. All Rights Reserved.
The Wall Street Publication > Blog > Tech > Code Dark: Children’s Hospital Strives to Minimize Impact of Hacks
Tech

Code Dark: Children’s Hospital Strives to Minimize Impact of Hacks

Editorial Board Published August 3, 2022
Share
Code Dark: Children’s Hospital Strives to Minimize Impact of Hacks
SHARE

In healthcare, code blue signifies an emergency with an adult patient. Code red warns of fire. At Children’s National Hospital in Washington, D.C., staff have added another: code dark, for a cyberattack.

Contents
Staff at Children’s National Hospital carry cards with code dark steps on lanyards.Newsletter Sign-upCybersecurityMore From WSJ Pro Cybersecurity

A nurse, doctor, or any staff member who sees something suspicious on a technology device, such as a screen displaying a ransom note or a system failing, must report it to hospital security staff, who then call the code.

At that point, technology specialists work to secure the network and all other hospital employees shut down machines near them, said Nathan Lesser, chief information security officer at the hospital.

“If we call a code dark, the entire hospital knows to disconnect devices anywhere they can,” he said. “And then suddenly, we have this additional perimeter. We can reduce the blast radius of malicious code running rampant across our network.”

Staff at Children’s National Hospital carry cards with code dark steps on lanyards.

Photo: Children’s National Hospital

Healthcare organizations are prime targets of hackers keen to get their hands on the personal and financial information they hold, or extort them for ransom, the logic being that they are likely to pay rather than risk patient care when digital systems go down.

Mr. Lesser said staff at Children’s National have learned about cyber threats and what they could do to counter hackers. They now have detailed instructions on how to power down devices, even pulling a power or network cord as a final resort. Training documents show photos of what different cables look like. The cyber team affixed reminder labels on machines such as monitors and network-connected devices, and hospital staff carry cards with code dark steps on lanyards.

“Someone who is an ER nurse or someone working in the operating room, they don’t necessarily know what a network cable is. You have to really make this accessible for everybody across the organization,” Mr. Lesser said.

The distributed nature of healthcare technology, growing use of internet-connected devices such as bedside terminals and strict regulations governing fines and public reporting for breaches not only leave hospitals vulnerable to cyberattacks, but also make them particularly damaging when they succeed.

Research from International Business Machines Corp. published last week found that the medical sector had the highest average cost per breach than any other for the 12th year in a row, at over $10 million.

Criminal hacking groups aren’t the only ones that see hospitals as a juicy target. In July, the U.S. government said it had disrupted a North Korean state-sponsored hacking campaign that targeted hospitals and other medical facilities in the U.S. for financial gain. Pyongyang has routinely denied involvement in cyberattacks.

Cybersecurity should be considered a critical risk for all medical facilities, said Phil Englert, director of medical device security at the Health Information Sharing and Analysis Center, a nonprofit that coordinates security among healthcare organizations. Hospitals should also develop comprehensive plans for dealing with individual medical devices, as their proliferation gives hackers more places to break into networks, he said.

Mr. Lesser, who joined the hospital in 2020, said he was asked by top executives and the hospital’s board to find ways to mitigate the long-term effects of cyberattacks, which have often taken healthcare systems around the world weeks or months to recover from. They wanted recovery time to be a week or less, he said.

Being able to do that requires the hospital to, among other things, cut the time it takes to spot that an attack is happening, he said, with detection speed critical to blunting its force. Hackers often dwell in systems for days or weeks before an attack, to learn how to move quickly across the network’s architecture once they detonate malware.


Newsletter Sign-up

WSJ Pro
Cybersecurity

Cybersecurity news, analysis and insights from WSJ’s global team of reporters and editors.


After an attack, technology teams can spend weeks restoring computers from backups where possible, formatting them where it isn’t, and generally rooting out the infection, often resulting in significant disruption to a business. Reducing the number of compromised systems, Mr. Lesser said, can mean less downtime.

To put code dark into practice, he harnessed the backbone of a hospital’s operations: its emergency operations plan. This plan covers hurricanes, active shooters, emergencies in clinical units and other crises, all of which are assigned a code so staff know how to react in specific situations.

Cybersecurity emergencies should be no different, Mr. Lesser said. The thousands of workers at Children’s National—clinicians, administrative and financial staff, security personnel and others—can be cyber first responders, he said.

Mr. Lesser’s efforts align with a growing consensus among medical experts that cybersecurity needs to form a core part of staff training. In the same way that staff learn how to operate medical technology correctly, Mr. Englert said, they must also learn about how to operate it safely when it comes to cybersecurity. Both are now essential to patient care, he said.

More From WSJ Pro Cybersecurity

Write to James Rundle at [email protected]

Copyright ©2022 Dow Jones & Company, Inc. All Rights Reserved. 87990cbe856818d5eddac44c7b1cdeb8

TAGGED:Tech NewsWall Street Publication
Share This Article
Twitter Email Copy Link Print
Previous Article PayPal Names Former Electronic Arts Executive Blake Jorgensen as CFO PayPal Names Former Electronic Arts Executive Blake Jorgensen as CFO
Next Article Big Tech Is the West’s Surprise Weapon in Competition With Russia, China Big Tech Is the West’s Surprise Weapon in Competition With Russia, China

Editor's Pick

Alyssa Farah Griffin: ‘The View’ Co-Host is Pregnant With Child #1!

Alyssa Farah Griffin: ‘The View’ Co-Host is Pregnant With Child #1!

Studying Time: 3 minutes The View co-host Alyssa Farah Griffin is pregnant! On ‘The View,’ Alyssa Farah Griffin breaks the…

By Editorial Board 3 Min Read
Arturo Gatti Jr. Reason behind Dying: Son of Boxing Legend Passes Away at 17
Arturo Gatti Jr. Reason behind Dying: Son of Boxing Legend Passes Away at 17

Studying Time: 2 minutes Aruturo Gatti Jr. — an aspiring boxer and…

3 Min Read
Mandy Moore ‘Unrecognizable’ to Followers After Debuting New Face
Mandy Moore ‘Unrecognizable’ to Followers After Debuting New Face

Studying Time: 4 minutes Mandy Moore has followers scratching their heads. This…

6 Min Read

Oponion

This Tomato and White Bean Soup Is the Cozy Dinner I am Leaning On Proper Now

This Tomato and White Bean Soup Is the Cozy Dinner I am Leaning On Proper Now

It appears to be the overall consensus that this has…

January 29, 2025

Attorneys who sued to void Musk’s Tesla pay package deal much less prone to obtain ‘windfall’ charges

Panelists Al Root and Jack Otter…

September 16, 2024

As Valentine’s Day approaches, listed here are one of the best US cities to get married in 2025

Good Earth CEO Beth Gerstein explains…

February 9, 2025

Horoscopes Aug. 8, 2025: Dustin Hoffman, let your instinct prepared the ground

CELEBRITIES BORN ON THIS DAY: Casey…

August 8, 2025

Failing Ahead: Rising Past Startup Mode With out Shedding Your Core

There’s a bizarre in-between house nobody…

May 23, 2025

You Might Also Like

WIRED’S Favourite PC Monitor Is  Off
Tech

WIRED’S Favourite PC Monitor Is $75 Off

In case you're uninterested in staring a tiny laptop computer display whereas working from residence, think about scooping up our…

3 Min Read
Your Cat In all probability Is not Ingesting Sufficient Water. A Fountain Can Assist.
Tech

Your Cat In all probability Is not Ingesting Sufficient Water. A Fountain Can Assist.

Evaluate Our PicksOthers We ExaminedCourtesy of PetkikPetkit Eversweet Max for $90: This techy computerized fountain will be both cordless or…

17 Min Read
Wish to Begin a Web site? These Are the Finest Web site Builders
Tech

Wish to Begin a Web site? These Are the Finest Web site Builders

Prime Web site BuildersFinest for Most IndividualsSquarespace CoreLearn ExtraFinest Low cost Web site BuilderHostinger Web site BuilderLearn ExtraFinest for Small…

5 Min Read
Specialised’s New Electrical Mountain Bike Is So Enjoyable I Forgot to Go House
Tech

Specialised’s New Electrical Mountain Bike Is So Enjoyable I Forgot to Go House

The following experience was on singletrack from my home to Spirit Mountain, Duluth’s downhill lift-accessed park with 24 trails starting…

4 Min Read
The Wall Street Publication

About Us

The Wall Street Publication, a distinguished part of the Enspirers News Group, stands as a beacon of excellence in journalism. Committed to delivering unfiltered global news, we pride ourselves on our trusted coverage of Politics, Business, Technology, and more.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • WP Creative Group
  • Accessibility Statement

Contact

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© 2024 The Wall Street Publication. All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?