Skip to main content
Logo GMV

Main navigation

  • Sectors
    • Icono espacio
      Space
    • Icono Aeronáutica
      Aeronautics
    • Icono Defensa y Seguridad
      Defence and Security
    • Icono Sistemas Inteligentes de Transporte
      Intelligent Transportation Systems
    • Icono Automoción
      Automotive
    • Icono Ciberseguridad
      Cybersecurity
    • Icono Servicios públicos Digitales
      Digital Public Services
    • Icono Sanidad
      Healthcare
    • Icono Industria
      Industry
    • Icono Financiero
      Financial
    • Icono Industria
      Services
    • All Sectors

    Highlight

    sistemas in-cabin
    How can in-cabin systems improve public transportation safety?
  • Talent
  • About GMV
    • Get to Know the Company
    • History
    • Management Team
    • Certifications
    • Sustainability
  • Communication
    • News
    • Events
    • Blog
    • Magazine GMV News
    • Press Room
    • Media library
    • Latest from GMV

Secondary navigation

  • Products A-Z
  • Home
  • Communication
  • News
Back
New search
Date
  • Cybersecurity

Continuing cyberattacks on Spain’s health system in the 2nd COVID-19 wave

06/10/2020
Share
GMV’s Cyberthreat Intelligence team, which keeps a permanent track of all malicious activity, warns of the persisting risk of cyberattacks on Spain’s health system during the 2nd COVID-19 wave.

GMV’s Cyberthreat Intelligence team, which keeps a permanent track of all malicious activity, warns of the persisting risk of cyberattacks on Spain’s health system during the 2nd COVID-19 wave. Health service providers, pharmaceutical companies, insurers and health centers are still firmly in the hackers’ sights.

The latest ransomware attacks show that these data-theft cybercriminals are now targeting patients’ medical records, healthcare personnel’s records, information on the development of new drugs, clinical trials, industrial property, etc.

GMV’s Cyberthreat Intelligence team has therefore drawn up a series of recommendations to ensure that health service providers, pharmaceutical companies, insurers and health centers are alert to the threats and protect themselves accordingly:

1.- The solution to this problem, both at professional and individual level, should focus on prevention as much as or even more than detection.

At professional level:

  • Strengthen telework cyber-protection measures, such as secure VPNs or web filtering.
  • Ensure proper management of patches and updates.
  • Monitor own and third-party vulnerabilities as well as the vulnerabilities of medical devices like pacemakers, glucose monitors and ultrasound devices.
  • Implement multifactor authentication by means of SMS, Google Authenticator or any other method.

At individual level:

  • Be particularly careful with emails , SMSs or WhatsApps from unknown senders. Never click on links or phrases like «click here» even if the message concerned has a normal appearance.
  • Install in computers and handhelds only official applications from a recognized source, such as Google Play or Apple App Store.
  • Keep computers and handhelds updated.
  • Use long, different passwords for each account.
  • Minimize the use of geolocation on telephones.
  • Do not connect up to unknown or open Wi-Fi networks.

2.- Healthcare organizations should set up and run a Strategic Cybersecurity Plan to standardize cyberattack response procedures and budget for the outlay in the necessary wherewithal. If the necessary technological resources are not to hand, cloud solutions can be resorted to, with data encryption methods to protect the stored information. Personnel should have the necessary skillsets and experience to confront today’s increasingly-sophisticated cybersecurity threats.

3.- Encourage a cybersecurity culture by means of periodic training courses on prevention measures, thus raising awareness of practices to avoid and consolidating sound cybersecurity behavior (e.g..: not exchanging health data by email unless encrypted with electronic certificate; making sure the password is secure and unshared, to fend off phishing; not connecting removable media that have been used in other computers, etc).

4.- Draw up an Incident Response Plan laying down cyberattack response procedures, seeking to minimize the impact at all levels and avoid downtime in the organization’s daily services, by means of backup and restoration procedures.

5.- Constant liaison with public and private cybersecurity organizations.

GMV runs a Computer Emergency Response Team (CERT) to deal with any threats. The CERT’s activities include infrastructure monitoring, audits, security vetting code analysis in the application development lifecycle, threat cyberintelligence, post-mortem forensic attack analysis plus compliance and consultancy services.

 

Share

Related

GMV analiza el papel de las tecnologías duales en la ciberseguridad y la ciberdefensa
  • Cybersecurity
News
GMV Examines the Role of Dual-Use Technologies in Cybersecurity and Cyberdefense
GMV participa en el Curso de Verano de la Universidad de Málaga sobre computación cuántica y tecnologías duales
  • Corporate
  • Cybersecurity
UMA summer courses 2026: Quantum Computing and Dual-Use Defence
15 Jul - 16 Jul

9:00 AM - 2:30 PM

GMV en el 10º Aniversario de ECSO, European Cyber Security Organisation
  • Cybersecurity
News
GMV at the 10th anniversary of ECSO, the European Cyber Security Organisation

Contact

Contact menu

  • Contact
  • GMV around the world

Blog

  • Blog

Sectors

Sectors menu

  • Space
  • Aeronautics
  • Defense and Security
  • Intelligent Transportation Systems
  • Automotive
  • Cybersecurity
  • Digital Public Services
  • Healthcare
  • Industry
  • Financial
  • Services
  • Talent
  • About GMV
  • Shortcut to
    • Press Room
    • News
    • Blog
    • Products A-Z
  • Other GMV sites
    • Alén Space
    • Autek Ingeniería
© 2026, GMV Innovating Solutions S.L.

Footer menu

  • Contact
  • Legal Notice
  • Privacy Policy
  • Cookie Policy

Footer Info

  • Commitment to the Environment
  • Financial Information