{"id":746566,"date":"2026-08-22T22:00:17","date_gmt":"2026-08-22T22:00:17","guid":{"rendered":"https:\/\/www.newsbeep.com\/uk\/746566\/"},"modified":"2026-08-22T22:00:17","modified_gmt":"2026-08-22T22:00:17","slug":"sickkids-childrens-hospital-bandages-up-careers-website-after-intruder-breaks-in","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/uk\/746566\/","title":{"rendered":"SickKids children\u2019s hospital bandages up careers website after intruder breaks in"},"content":{"rendered":"<p class=\"kicker \" style=\"\">cybercrime<\/p>\n<p class=\"subtitle \" style=\"\">Toronto org says it wasn\u2019t the only one to be affected by the third-party software vulnerability<\/p>\n<p>Toronto\u2019s Hospital for Sick Children, commonly referred to as SickKids, says the data of current and former staff, as well as job applicants, was exposed after an intruder exploited a security flaw in a third-party software application used by the hospital.<\/p>\n<p>SickKids, which may ring a bell for those who have kept close tabs on ransomware news in recent years, said the intrusion affected its external careers site, which has now been restored.<\/p>\n<p>\u201cClinical systems and patient information were not affected, and patient care has continued as usual,\u201d it <a href=\"https:\/\/www.sickkids.ca\/en\/news\/archive\/2026\/SickKids-employee-information-impacted-by-cybersecurity-incident\/\" rel=\"nofollow noopener\" target=\"_blank\">said<\/a>, after explaining that the break-in was a result of a vulnerability in a \u201cthird-party software application used by SickKids and other organizations.&#8221;<\/p>\n<p>Current and former employees of SickKids, the SickKids Foundation, and the hospital\u2019s Vaughan, Ontario-based Boomerang clinic may all be affected, as were SickKids job applicants.<\/p>\n<p>The hospital did not comment on the scale of the breach, but said those affected will be offered the usual identity and credit monitoring services.<\/p>\n<p>\u201cOur review of the impacted information is ongoing. Individuals determined to have been impacted will be notified directly, though, out of an abundance of caution, all potentially impacted individuals have been alerted and offered 24 months of complimentary credit monitoring and identity protection services.\u00a0\u00a0\u00a0<\/p>\n<p>\u201cSafeguarding the privacy and security of personal information is a responsibility SickKids takes seriously. We remain committed to maintaining strong protections and continuously enhancing our cybersecurity measures to help protect the information entrusted to us.\u201d<\/p>\n<p>SickKids\u2019 lucky ransomware escape<\/p>\n<p>The children\u2019s hospital is no stranger to cyber struggles. On December 18, 2022, it was <a href=\"https:\/\/www.theregister.com\/security\/2023\/01\/04\/lockbit-sorry-for-sickkids-but-not-housing-authority\/627742\" rel=\"nofollow noopener\" target=\"_blank\">targeted by a LockBit ransomware affiliate<\/a> \u2013 a particularly egregious attack even for LockBit and one that attracted an overwhelmingly negative reaction.<\/p>\n<p>The ransomware operator issued an ultra-rare apology on December 31, 2022, announcing that it would offer SickKids a free decryptor and that the affiliate who carried it out was expelled from the program. Banished from the darkest corner of cybercrime\u2026 now that\u2019s a feat.<\/p>\n<p>By that time, however, SickKids had been handling the recovery well, and had restored around 60 percent of its systems after refusing to pay the crooks a ransom.<\/p>\n<p>LockBit\u2019s gesture of goodwill later turned out to be an anomaly, however, as exactly a year later it refused to roll back <a href=\"https:\/\/www.theregister.com\/security\/2024\/02\/01\/lockbit-remorseless-in-latest-childrens-hospital-attack\/1375808\" rel=\"nofollow noopener\" target=\"_blank\">the attack on Saint Anthony Hospital<\/a>, a children\u2019s healthcare facility in Chicago. \u00ae<\/p>\n","protected":false},"excerpt":{"rendered":"cybercrime Toronto org says it wasn\u2019t the only one to be affected by the third-party software vulnerability Toronto\u2019s&hellip;\n","protected":false},"author":2,"featured_media":746567,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[43],"tags":[102,2960,56,54,55],"class_list":["post-746566","post","type-post","status-publish","format-standard","has-post-thumbnail","category-healthcare","tag-health","tag-healthcare","tag-uk","tag-united-kingdom","tag-unitedkingdom"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts\/746566","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/comments?post=746566"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts\/746566\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/media\/746567"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/media?parent=746566"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/categories?post=746566"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/tags?post=746566"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}