DaVita, a major U.S. dialysis service provider operating nearly 3,000 outpatient clinics and serving ~200,000 patients annually, suffered a **ransomware attack** that encrypted parts of its IT network. The incident, discovered on **Saturday**, caused **operational disruptions**, forcing the company to isolate affected systems while continuing patient care. DaVita could not estimate the **duration or full extent** of the disruption, which impacted its ability to restore critical functions. The attack follows a broader trend of cyber threats in healthcare, including a 2023 breach at rival **Fresenius Medical Care** (500,000 patient records stolen) and a 2023 ransomware attack on **UnitedHealth Group’s tech unit** (100 million records exposed). DaVita engaged third-party cybersecurity experts and notified law enforcement. Given its role in life-sustaining dialysis services, the attack poses risks to **patient safety** and **operational continuity**, with potential cascading effects on healthcare delivery.
Source: https://www.businessinsurance.com/dialysis-firm-davita-hit-by-ransomware-attack/
TPRM report: https://www.rankiteo.com/company/davita
"id": "dav816090225",
"linkid": "davita",
"type": "Ransomware",
"date": "6/2023",
"severity": "100",
"impact": "7",
"explanation": "Attack that could injure or kill people"
{'affected_entities': [{'industry': 'healthcare (dialysis services)',
'location': 'United States',
'name': 'DaVita',
'size': 'large (nearly 3,000 outpatient clinics, '
'~200,000 patients served annually)',
'type': 'healthcare provider'}],
'data_breach': {'data_encryption': True},
'date_detected': '2024-05-11',
'date_publicly_disclosed': '2024-05-13',
'description': 'DaVita, a major dialysis service provider, was hit by a '
'ransomware attack that encrypted parts of its network, '
'causing operational disruptions. The company continues to '
'provide patient care while assessing the incident with '
'third-party cybersecurity professionals and law enforcement. '
'The extent and duration of the disruption remain unclear.',
'impact': {'operational_impact': 'disruptions in operations, including '
'separation of impacted systems from the '
'network; patient care continues',
'systems_affected': ['certain elements of its network']},
'investigation_status': 'ongoing (assessing with third-party cybersecurity '
'professionals)',
'ransomware': {'data_encryption': True},
'references': [{'date_accessed': '2024-05-13', 'source': 'Reuters'}],
'regulatory_compliance': {'regulatory_notifications': ['regulatory filing']},
'response': {'communication_strategy': ['regulatory filing'],
'containment_measures': ['separating impacted systems from the '
'network'],
'incident_response_plan_activated': True,
'law_enforcement_notified': True,
'recovery_measures': ['restoring certain functions'],
'third_party_assistance': ['cybersecurity professionals']},
'title': 'Ransomware Attack on DaVita Disrupts Operations',
'type': 'ransomware'}