Reference 2017-300

REF:            2017-300

Subject:        Cyber attacks

    

 

Request:

  1. Details of any ransomware that has affected any of the IT systems used by the Bolton NHS Foundation Trust. In each case this should include:
    • The name of the ransomware
    • The systems affected by the attack and what it is normally used for
    • The operating system being run
    • When and for how long systems were affected
    • How the systems were affected, i.e. whether files were decrypted, systems locked, or other (please specify)
    • What would happen if the ransom was not paid
    • How the ransomware gained access to the network, i.e. phishing email, USB stick, other (please specify)
    • The ransom requested
    • If the ransom was paid and the total ransom paid for the attack
    • The number of medical activities (e.g. operations, scans, prescriptions, etc) that had to be suspended or altered during the infection period
  1. Details of any other type of malware that has affected any of the IT systems used by the Bolton NHS Foundation Trust. In each case this should include:
    • The name of the malware
    • The systems affected by the attack and what it is normally used for
    • The operating system being run
    • How the systems were affected, i.e. whether files were decrypted, systems locked, data stolen or other (please specify)
    • When and for how long systems were affected
    • How the ransomware gained access to the network, i.e. phishing email, USB stick, other (please specify)
    • The number of medical activities (e.g. operations, scans, prescriptions, etc) that had to be suspended or altered during the infection period
  1. Any correspondence between senior members of staff about incidents logged as part of 1 and 2.
  1. Any correspondence between the Bolton NHS Foundation Trust and government departments logged as part of 1 and 2.

 

 

Response:

Please find information attached.

2017-300 – FOI Request – Cyber attacks [117 kb] PDF