Germany
DEU
On 10 September 2020, Universitätsklinikum Düsseldorf suffered a cyberattack that exploited a widely known Citrix VPN vulnerability, causing major IT outages and suspension of emergency admissions; the BSI issued a warning, and the hospital reported step-by-step restoration with normal operations resuming around 12 October 2020 (https://www.uniklinik-duesseldorf.de/ueber-uns/pressemitteilungen/detail/it-ausfall-an-der-uniklinik-duesseldorf,https://www.bsi.bund.de/DE/Service-Navi/Presse/Pressemitteilungen/Presse2020/UKDuesseldorf_170920.html,https://www.businessinsider.de/politik/deutschland/hacker-legen-uniklinik-duesseldorf-lahm-staatsanwaltschaft-ermittelt-wegen-todesfall-einer-patientin,https://www.kma-online.de/aktuelles/it-digital-health/detail/it-sicherheit-von-kliniken-mangelhaft-a-45318).
Estimated severity
85 / 100
Source reliability
97 / 100
Approximate Date
10/09/2020
Targeted Company
UNIVERSITATSKLINIKUM DUSSELDORF
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
Germany
DEU
No other affected countries reported
Target country
Germany
Affected countries
Impacted regions
No information
Duration
32 days
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Incident Sources
Please rotate your phone