HIPAAttack: Threat Emulation Tool for Ubuntu in Healthcare Environments
Open AccessAn average cost of healthcare data breach is over $10 million, which is higher than any other industry (IBM, 2023). Protected Health Information (PHI) is deemed a highly valuable asset by malicious actors. Given that many healthcare organizations may not have a robust security program in place, they become appealing targets for hackers. The primary objective of this praxis is to develop an open-source threat emulation tool that simulates attacks against Ubuntu Linux servers in healthcare environments. This tool, named HIPAAttack, adheres to the MITRE ATT&CK; framework. It focuses on exploiting threat vectors that are associated with healthcare data breach attacks, such as exfiltration and compromise of sensitive data. HIPAAttack offers a notably broader attack coverage for Ubuntu Linux compared to other threat emulation tools, such as Atomic Red Team and Uber Metta. Furthermore, it performs across current and older versions of Ubuntu Linux. With these features, HIPAAttack provides a more robust and healthcare-specific alternative to existing toolsets, and it is released as open-sourced tool on GitHub. Security teams of healthcare organizations can leverage HIPAAttack to identify threat vectors and examine typical adversarial behavior. Threat intelligence provided by HIPAAttack should be used to remediate vulnerabilities and misconfigurations to minimize the risks of healthcare data breaches. In summary, this praxis provides an instrument to reduce data breaches for organizations in the healthcare industry.
- All rights reserved
Notice to Authors
If you are the author of this work and you have any questions about the information on this page, please use the Contact form to get in touch with us.
| Thumbnail | Title | Date Uploaded | Visibility | Actions |
|---|---|---|---|---|
|
|
Stepanov_gwu_0075A_16667.pdf | 2024-01-11 | Open Access |
|