{"id":6141,"date":"2017-05-31T19:18:26","date_gmt":"2017-05-31T19:18:26","guid":{"rendered":"https:\/\/staging.nsfocusglobal.com\/?p=6141"},"modified":"2017-05-31T19:18:26","modified_gmt":"2017-05-31T19:18:26","slug":"retrospective-nhs-ransomware-technical-debt","status":"publish","type":"post","link":"https:\/\/nsfocusglobal.com\/pt-br\/retrospective-nhs-ransomware-technical-debt\/","title":{"rendered":"Retrospective: NHS, ransomware and technical debt"},"content":{"rendered":"<p><em><strong>By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS<\/strong><\/em><\/p>\n<p>On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption to service in the history of the organisation.  The disruption was due to a type of malicious software, known as ransomware, with the purpose of attempting to extort money from victims by encrypting their data, and offering to decrypt that data for a fee, a ransom no less, or lose that data forever.<!--more--><\/p>\n<p>Ransomware is not a new concept. Though it has been continually maturing to the degree that there are now <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/new-fatboy-ransomware-as-a-service-advertised-on-russian-hacking-forum\/\" target=\"_blank\" rel=\"noopener\">Ransomware-as-a-Service<\/a> solutions for criminals with no technical expertise to take advantage of.<\/p>\n<p>So how does this happen? How can a critical national service become a victim of this? How can a customer of technology solutions be left vulnerable to exploits? Many questions have been asked in the wake of this event.  However, will the answers to these questions actually make a difference?<\/p>\n<p>To understand society\u2019s challenge in the face of business interests, prerogatives, politics, and other issues relating to security, we might look back in history to understand what has to happen for things to \u2018change\u2019.<\/p>\n<p>Quite often, the imperative to \u2018do something\u2019 only occurs when one of two things occur: people die in significant numbers or large sums of money are lost. History teaches us some important lessons, yet we continue to make the same mistakes. The 1965 publication of <a href=\"https:\/\/en.wikipedia.org\/wiki\/Ralph_Nader\" target=\"_blank\" rel=\"noopener\">Ralph Nader\u2019s<\/a> journalistic expos\u00e9 <a href=\"https:\/\/en.wikipedia.org\/wiki\/Unsafe_at_Any_Speed\" target=\"_blank\" rel=\"noopener\"><em>Unsafe at Any Speed<\/em><\/a> claimed that many automobiles were unsafe to \u2018operate\u2019. This attracted the wrath of the automobile industry which then embarked on a dirty-tricks campaign to silence his voice. Instead, this drove Nader to increase his \u2018activism\u2019, challenge the establishment \/ government in the USA with impressive results that ended in major legislation being passed to protect citizens across a wide range of issues including Food Safety.<\/p>\n<p>So, with the history lesson finished, what is taking place in the UK? Well things are not quite as bad as the Nader story, but there has been extensive debate on trying to place attribution of fault on a variety of actors in this event including:<\/p>\n<ul>\n<li>the perpetrators of the ransomware attack,<\/li>\n<li>the NSA who designed the software that weaponised the vulnerability in Microsoft\u2019s products (<a href=\"https:\/\/arstechnica.com\/security\/2017\/04\/nsa-leaking-shadow-brokers-just-dumped-its-most-damaging-release-yet\/\" target=\"_blank\" rel=\"noopener\">which then got leaked<\/a>),<\/li>\n<li>Microsoft\u2019s approach to legacy software support,<\/li>\n<li>the NHS for\n<ul>\n<li><em>not<\/em> applying <a href=\"https:\/\/www.cisecurity.org\/controls\/\" target=\"_blank\" rel=\"noopener\">best-practices in information security controls<\/a>\n<ul>\n<li>where was the network segmentation? Why was the infamous NHS backbone network the main channel that distributed the malware throughout the NHS? [Herein certain trusts\u2019 IT teams, on hearing of the outbreak, immediately disconnected from this backbone so as to avoid being \u2018infected\u2019 with the ransomware &#8211; see below],<\/li>\n<li>why were routing ports used for SMB protocol communications exposed to the public internet!?<\/li>\n<li><em>not<\/em> patching \/ upgrading their technology assets, Microsoft <em>did<\/em> <a href=\"https:\/\/technet.microsoft.com\/en-us\/library\/security\/ms17-010.aspx\" target=\"_blank\" rel=\"noopener\">release a patch<\/a> for currently supported operating systems several months before the attack took place,<\/li>\n<\/ul>\n<\/li>\n<li><em>not<\/em> upgrading legacy software when <a href=\"https:\/\/www.digitalhealth.net\/2017\/05\/one-in-five-nhs-trusts-were-hit-by-fridays-cyber-attack\/\" target=\"_blank\" rel=\"noopener\">funds were made available<\/a> specifically for this task due to needing to invest those funds elsewhere in order to maintain their services to the public,<\/li>\n<\/ul>\n<\/li>\n<li>the vendors of healthcare information technology (such as MRI scanners) that were allowing outdated and unpatched software to run on their products (herein the fear <a href=\"https:\/\/www.schneier.com\/blog\/archives\/2017\/02\/security_and_th.html\" target=\"_blank\" rel=\"noopener\">security thought-leaders<\/a> are trying to highlight with the Internet of Things) and only offering to upgrade if the NHS bought an entire new solution which was of course cost-preventative. Cash-strapped NHS trusts found themselves making pragmatic choices as the products were doing what they were designed to do and they ignored the risks,<\/li>\n<li>and last but not least, <a href=\"http:\/\/www.telegraph.co.uk\/news\/2017\/05\/13\/nhs-cyber-attack-repeated-warnings-system-vulnerability-not\/\" target=\"_blank\" rel=\"noopener\">the UK Government \/ Department of Health and Social Security<\/a>.<\/li>\n<\/ul>\n<p>Adding to the \u2018noise\u2019, stock prices of information security companies rose as much as 7% and simultaneously, marketeers began the process of \u2018ambulance chasing\u2019. The general media swarmed over the \u2018event\u2019, disregarding information security professionals\u2019 privacy, sensationalising facts and spreading misinformation to one degree or another.<\/p>\n<p>However, there were some positive events and outcomes following the attack.<\/p>\n<ul>\n<li>There was a massive, concerted effort by the global information security community, rapidly crowdsourcing expertise to analyse and document the threat in order to share their findings publicly such as:<br \/>\n<img fetchpriority=\"high\" decoding=\"async\" src=\"\/wp-content\/uploads\/2017\/05\/respectivenh-01.jpg\" alt=\"\" width=\"553\" height=\"141\" class=\"alignnone size-full wp-image-5836\" \/><br \/>\nSource: <a href=\"https:\/\/twitter.com\/MalwareTechBlog\/status\/863759471088201728\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/MalwareTechBlog\/status\/863759471088201728<\/a><\/p>\n<p><img decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-02.jpg\" alt=\"\" width=\"558\" height=\"448\" class=\"alignnone size-full wp-image-6145\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-02.jpg 558w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-02-300x241.jpg 300w\" sizes=\"(max-width: 558px) 100vw, 558px\" \/><br \/>\nSource: <a href=\"https:\/\/intel.malwaretech.com\/botnet\/wcrypt\" target=\"_blank\" rel=\"noopener\">https:\/\/intel.malwaretech.com\/botnet\/wcrypt<\/a><\/p>\n<p><img decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-03.jpg\" alt=\"\" width=\"587\" height=\"1069\" class=\"alignnone size-full wp-image-6147\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-03.jpg 587w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-03-165x300.jpg 165w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-03-562x1024.jpg 562w\" sizes=\"(max-width: 587px) 100vw, 587px\" \/><br \/>\nSource: <a href=\"https:\/\/twitter.com\/malwareunicorn\/status\/863841835562614784\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/malwareunicorn\/status\/863841835562614784<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-04.jpg\" alt=\"\" width=\"577\" height=\"713\" class=\"alignnone size-full wp-image-6149\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-04.jpg 577w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-04-243x300.jpg 243w\" sizes=\"(max-width: 577px) 100vw, 577px\" \/><br \/>\nSource: <a href=\"https:\/\/twitter.com\/zhaol\/status\/864201293102960640\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/zhaol\/status\/864201293102960640<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-05.jpg\" alt=\"\" width=\"576\" height=\"247\" class=\"alignnone size-full wp-image-6151\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-05.jpg 576w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-05-300x129.jpg 300w\" sizes=\"(max-width: 576px) 100vw, 576px\" \/><br \/>\nSource: <a href=\"https:\/\/twitter.com\/gcluley\/status\/863042528920170496\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/gcluley\/status\/863042528920170496<\/a><br \/>\nVideo: <a href=\"https:\/\/www.youtube.com\/embed\/wg44hFvsqyE\" target=\"_blank\" rel=\"noopener\">https:\/\/www.youtube.com\/embed\/wg44hFvsqyE<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-06.jpg\" alt=\"\" width=\"561\" height=\"280\" class=\"alignnone size-full wp-image-6152\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-06.jpg 561w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-06-300x150.jpg 300w\" sizes=\"(max-width: 561px) 100vw, 561px\" \/><br \/>\nSource: <a href=\"https:\/\/twitter.com\/cybergibbons\/status\/863727819884515328\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/cybergibbons\/status\/863727819884515328<\/a><\/p>\n<ul>\n<li><a href=\"https:\/\/security.stackexchange.com\/questions\/159331\/how-is-the-wannacry-malware-spreading-and-how-should-users-defend-themselves-f\/\" target=\"_blank\" rel=\"noopener\">https:\/\/security.stackexchange.com\/questions\/159331\/how-is-the-wannacry-malware-spreading-and-how-should-users-defend-themselves-f\/<\/a><\/li>\n<li>\u2026 and <a href=\"https:\/\/twitter.com\/search?q=%23wannacry%20patch&#038;src=typd&#038;lang=en\" target=\"_blank\" rel=\"noopener\">many, many more<\/a><\/li>\n<\/ul>\n<\/li>\n<li>People shared their expertise and helped provide insight into the issues facing the NHS and wider community at risk via social media and communities of practice:<br \/>\n<img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-07.jpg\" alt=\"\" width=\"558\" height=\"206\" class=\"alignnone size-full wp-image-6155\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-07.jpg 558w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-07-300x111.jpg 300w\" sizes=\"(max-width: 558px) 100vw, 558px\" \/><br \/>\nSource: <a href=\"https:\/\/falanx.com\/dont-attack-nhs\/\" target=\"_blank\" rel=\"noopener\">https:\/\/falanx.com\/dont-attack-nhs\/<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-08.jpg\" alt=\"\" width=\"602\" height=\"561\" class=\"alignnone size-full wp-image-6156\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-08.jpg 602w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-08-300x280.jpg 300w\" sizes=\"(max-width: 602px) 100vw, 602px\" \/><br \/>\nSource: <a href=\"https:\/\/www.linkedin.com\/hp\/update\/6269858514991181824\" target=\"_blank\" rel=\"noopener\">https:\/\/www.linkedin.com\/hp\/update\/6269858514991181824<\/a>\n<\/li>\n<li>Information security professionals and some security consultancies gave their time and support freely, to help get control of the situation:<br \/>\n<img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/staging.nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-09.jpg\" alt=\"\" width=\"604\" height=\"145\" class=\"alignnone size-full wp-image-6158\" srcset=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-09.jpg 604w, https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/respectivenh-09-300x72.jpg 300w\" sizes=\"(max-width: 604px) 100vw, 604px\" \/><br \/>\nSource: <a href=\"https:\/\/www.linkedin.com\/hp\/update\/6270659117518458880\" target=\"_blank\" rel=\"noopener\">https:\/\/www.linkedin.com\/hp\/update\/6270659117518458880<\/a>\n<\/li>\n<\/ul>\n<p>Technology advances at a blinding pace and security continues to be an afterthought behind profit. <a href=\"https:\/\/www.owasp.org\/index.php\/Security_by_Design_Principles\" target=\"_blank\" rel=\"noopener\"><em>Security by design<\/em><\/a> and <a href=\"https:\/\/www.slideshare.net\/GeorgianPartners\/security-first-trends-and-principles\" target=\"_blank\" rel=\"noopener\"><em>security first<\/em> <\/a> must be principles that <a href=\"https:\/\/threatpost.com\/pacemaker-ecosystem-fails-its-cybersecurity-checkup\/125942\/\" target=\"_blank\" rel=\"noopener\">industry adheres to<\/a>. We\u2019ve heard a lot about corporate social responsibility, <a href=\"https:\/\/ico.org.uk\/for-organisations\/data-protection-reform\/overview-of-the-gdpr\/\" target=\"_blank\" rel=\"noopener\">privacy and data protection<\/a> over the last few decades, \u2018security\u2019 must be a part of these initiatives. More so, if organisations do not evaluate the risk of <a href=\"https:\/\/en.wikipedia.org\/wiki\/Technical_debt\" target=\"_blank\" rel=\"noopener\">technical debt<\/a> and have mitigation plans ready to enact, then they will never be prepared for this kind of event. Not all NHS trusts were affected, some had already prepared for this.<\/p>\n<p>As humans, we have an innate capacity to be stupid, we have or will do something stupid more than once in our lives. Without checks, controls and consequences how shall we protect ourselves? Looking back on history&#8230; until more people die, or more money is lost\/stolen, we must ask at what point does our society take action and put in place legislative controls that embrace the entire ecosystem of critical technologies being deployed &#8211; instead of leaving us to play <a href=\"https:\/\/www.digitalhealth.net\/2017\/05\/microsoft-defends-its-role-in-the-nhs-cyber-attack\/\" target=\"_blank\" rel=\"noopener\">the blame game<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption to service in the history of the organisation. The disruption was due to a type of malicious software, known as ransomware, with the purpose of attempting to extort money from victims by encrypting their [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":6258,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_coblocks_attr":"","_coblocks_dimensions":"","_coblocks_responsive_height":"","_coblocks_accordion_ie_support":"","footnotes":""},"categories":[3],"tags":[],"class_list":["post-6141","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Retrospective: NHS, ransomware and technical debt - NSFOCUS<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/\" \/>\n<meta property=\"og:locale\" content=\"pt_BR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Retrospective: NHS, ransomware and technical debt - NSFOCUS\" \/>\n<meta property=\"og:description\" content=\"By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/\" \/>\n<meta property=\"og:site_name\" content=\"NSFOCUS\" \/>\n<meta property=\"article:published_time\" content=\"2017-05-31T19:18:26+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg\" \/>\n<meta name=\"author\" content=\"NSFOCUS\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Retrospective: NHS, ransomware and technical debt - NSFOCUS\" \/>\n<meta name=\"twitter:description\" content=\"By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"NSFOCUS\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. tempo de leitura\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/\"},\"author\":{\"name\":\"NSFOCUS\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#\\\/schema\\\/person\\\/fd9ab61c9c77a81bbd870f725cc0c61d\"},\"headline\":\"Retrospective: NHS, ransomware and technical debt\",\"datePublished\":\"2017-05-31T19:18:26+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/\"},\"wordCount\":996,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/05\\\/thumb.jpg\",\"articleSection\":[\"Blog\"],\"inLanguage\":\"pt-BR\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/\",\"name\":\"Retrospective: NHS, ransomware and technical debt - NSFOCUS\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/05\\\/thumb.jpg\",\"datePublished\":\"2017-05-31T19:18:26+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#breadcrumb\"},\"inLanguage\":\"pt-BR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#primaryimage\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/05\\\/thumb.jpg\",\"contentUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2017\\\/05\\\/thumb.jpg\",\"width\":110,\"height\":120,\"caption\":\"Cloud DPS logo with shield design.\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/retrospective-nhs-ransomware-technical-debt\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/nsfocusglobal.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Retrospective: NHS, ransomware and technical debt\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#website\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/\",\"name\":\"NSFOCUS\",\"description\":\"Security Made Smart and Simple\",\"publisher\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/nsfocusglobal.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"pt-BR\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#organization\",\"name\":\"NSFOCUS\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/logo-ns.png\",\"contentUrl\":\"https:\\\/\\\/nsfocusglobal.com\\\/wp-content\\\/uploads\\\/2024\\\/08\\\/logo-ns.png\",\"width\":248,\"height\":36,\"caption\":\"NSFOCUS\"},\"image\":{\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/nsfocusglobal.com\\\/#\\\/schema\\\/person\\\/fd9ab61c9c77a81bbd870f725cc0c61d\",\"name\":\"NSFOCUS\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-BR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g\",\"caption\":\"NSFOCUS\"},\"sameAs\":[\"https:\\\/\\\/nsfocusglobal.com\"],\"url\":\"https:\\\/\\\/nsfocusglobal.com\\\/pt-br\\\/author\\\/admin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Retrospective: NHS, ransomware and technical debt - NSFOCUS","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/","og_locale":"pt_BR","og_type":"article","og_title":"Retrospective: NHS, ransomware and technical debt - NSFOCUS","og_description":"By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption","og_url":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/","og_site_name":"NSFOCUS","article_published_time":"2017-05-31T19:18:26+00:00","og_image":[{"url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","type":"","width":"","height":""}],"author":"NSFOCUS","twitter_card":"summary_large_image","twitter_title":"Retrospective: NHS, ransomware and technical debt - NSFOCUS","twitter_description":"By:\u00a0Stephen Gates, Chief Research Intelligence Analyst, NSFOCUS On May 15th, the NHS (UK\u2019s National Health Service) suffered its single worst disruption","twitter_image":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","twitter_misc":{"Escrito por":"NSFOCUS","Est. tempo de leitura":"5 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#article","isPartOf":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/"},"author":{"name":"NSFOCUS","@id":"https:\/\/nsfocusglobal.com\/#\/schema\/person\/fd9ab61c9c77a81bbd870f725cc0c61d"},"headline":"Retrospective: NHS, ransomware and technical debt","datePublished":"2017-05-31T19:18:26+00:00","mainEntityOfPage":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/"},"wordCount":996,"commentCount":0,"publisher":{"@id":"https:\/\/nsfocusglobal.com\/#organization"},"image":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#primaryimage"},"thumbnailUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","articleSection":["Blog"],"inLanguage":"pt-BR","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/","url":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/","name":"Retrospective: NHS, ransomware and technical debt - NSFOCUS","isPartOf":{"@id":"https:\/\/nsfocusglobal.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#primaryimage"},"image":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#primaryimage"},"thumbnailUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","datePublished":"2017-05-31T19:18:26+00:00","breadcrumb":{"@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#breadcrumb"},"inLanguage":"pt-BR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/"]}]},{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#primaryimage","url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","contentUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2017\/05\/thumb.jpg","width":110,"height":120,"caption":"Cloud DPS logo with shield design."},{"@type":"BreadcrumbList","@id":"https:\/\/nsfocusglobal.com\/retrospective-nhs-ransomware-technical-debt\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/nsfocusglobal.com\/"},{"@type":"ListItem","position":2,"name":"Retrospective: NHS, ransomware and technical debt"}]},{"@type":"WebSite","@id":"https:\/\/nsfocusglobal.com\/#website","url":"https:\/\/nsfocusglobal.com\/","name":"NSFOCUS","description":"Security Made Smart and Simple","publisher":{"@id":"https:\/\/nsfocusglobal.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nsfocusglobal.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"pt-BR"},{"@type":"Organization","@id":"https:\/\/nsfocusglobal.com\/#organization","name":"NSFOCUS","url":"https:\/\/nsfocusglobal.com\/","logo":{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/nsfocusglobal.com\/#\/schema\/logo\/image\/","url":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2024\/08\/logo-ns.png","contentUrl":"https:\/\/nsfocusglobal.com\/wp-content\/uploads\/2024\/08\/logo-ns.png","width":248,"height":36,"caption":"NSFOCUS"},"image":{"@id":"https:\/\/nsfocusglobal.com\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/nsfocusglobal.com\/#\/schema\/person\/fd9ab61c9c77a81bbd870f725cc0c61d","name":"NSFOCUS","image":{"@type":"ImageObject","inLanguage":"pt-BR","@id":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d3dc987908fc59791d261b1006d84eb931d15287261476b9384e690ed0c568de?s=96&d=mm&r=g","caption":"NSFOCUS"},"sameAs":["https:\/\/nsfocusglobal.com"],"url":"https:\/\/nsfocusglobal.com\/pt-br\/author\/admin\/"}]}},"_links":{"self":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts\/6141","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/comments?post=6141"}],"version-history":[{"count":0,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/posts\/6141\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/media\/6258"}],"wp:attachment":[{"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/media?parent=6141"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/categories?post=6141"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nsfocusglobal.com\/pt-br\/wp-json\/wp\/v2\/tags?post=6141"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}