Barts Health NHS Trust rules out ransomware attack
But hospital trust admits patient data could still be at risk

Barts Health NHS Trust has ruled out a ransomware attack on its systems today, but confirmed a cyber attack has potentially put patient data at risk.
The hospital trust sent staff an email this morning, warning that engineers were investigating a ransomware attack, according to the Health Service Journal (HSJ).
However, a spokeswoman subsequently told IT Pro: "Earlier this morning ransomware was a possibility, however now at this later stage in our investigation we don't believe ransomware is involved."
On the other hand, the trust has not been able to establish what kind of cyber attack it has suffered, and has had to take some drives and systems offline during an ongoing investigation.
"We are going through [our systems] and we are making things accessible as we do that," the spokeswoman told IT Pro. "We are having to go through everything to make sure it's not hiding anywhere."
So far, the trust has established that the Cerner Millennium patient administration system and the clinical system used for radiology are not affected.
HSJ reported that the cyber attack affected thousands of files that are stored on computers running the out-of-support Windows XP operating system.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Nine in 10 NHS trusts still rely on the OS, despite Microsoft ending support for it in April 2014, according to a Freedom of Information (FoI) request conducted in October 2016, and published in December.
Another FoI last year suggested cyber criminals had targeted at least 28 NHS trusts with ransomware in the previous 12 months, seeking to lock access to patient data until the trusts paid a fee. NHS Digital, the body that oversees cybersecurity for the health service, said no ransom was ever paid and no data was lost.
A ransomware attack on Northern Lincolnshire and Google NHS Foundation Trust's network in November led to the cancellation of 2,800 appointments, after it severely affected the trust's IT systems for four days.
The Barts Health NHS Trust spokeswoman said: "We are urgently investigating this matter and have taken a number of drives offline as a precautionary measure. We have tried and tested contingency plans in place and are making every effort to ensure that patient care will not be affected."
-
Everything we know so far about the United Natural Foods cyber attack
News The attack on United Natural Foods, a major US distributor, severely disrupted systems
-
European financial firms are battling a huge rise in third-party breaches
News Growing vendor dependency has contributed to a marked rise in third-party breaches
-
‘I take pleasure in thinking I can rid society of at least some of them’: A cyber vigilante is dumping information on notorious ransomware criminals – and security experts say police will be keeping close tabs
News An anonymous whistleblower has released large amounts of data allegedly linked to the ransomware gangs
-
Two more NHS Trusts have been hit with cyber attacks – here’s what we know so far
News A flaw in a third-party device management tool appears to be the source of the incident
-
It's been a bad week for ransomware operators
News A host of ransomware strains have been neutralized, servers seized, and key players indicted
-
Everything we know about the Peter Green Chilled cyber attack
News A ransomware attack on the chilled food distributor highlights the supply chain risks within the retail sector
-
NHS England launches cyber charter to shore up vendor security practices
News Voluntary charter follows a series of high-profile ransomware attacks
-
Scattered Spider: Who are the alleged hackers behind the M&S cyber attack?
News The Scattered Spider group has been highly active in recent years
-
Ransomware attacks are rising — but quiet payouts could mean there's more than actually reported
News Ransomware attacks continue to climb, but they may be even higher than official figures show as companies choose to quietly pay to make such incidents go away.
-
Cleo attack victim list grows as Hertz confirms customer data stolen – and security experts say it won't be the last
News Hertz has confirmed it suffered a data breach as a result of the Cleo zero-day vulnerability in late 2024, with the car rental giant warning that customer data was stolen.