AnMed Health System Grapples with Malware Disruption, Halting Dozens of Departments
A non-profit health system serving South Carolina and Georgia, **AnMed**, is currently navigating a significant cybersecurity incident involving malware. The disruption has forced the closure of dozens of departments and facilities, impacting patient care across its network of four hospitals and over 60 physician practices. This latest attack underscores the healthcare sector's ongoing vulnerability to cyber threats.
On Sunday, **AnMed** publicly acknowledged a βcybersecurity disruption involving malwareβ that led to widespread system outages, affecting phone lines and internet connectivity across all its facilities. The health system is actively working to restore its operations and ascertain the full scope of the incident.
By Monday, **AnMed** released a comprehensive list detailing the extensive closures. While urgent care services remain operational, essential departments such as all imaging, OBGYN, and primary care clinics, alongside all medical group offices, have been temporarily shuttered. The **AnMed** network is a critical provider for northeast Georgia and upstate South Carolina.
In response to the crisis, **AnMed** stated, βWe are coordinating closely with emergency medical services, regional hospitals and public safety partners to ensure patients continue to receive the care they need in the most appropriate setting.β
This incident is not isolated, reflecting a disturbing trend of cyberattacks targeting the healthcare sector. Earlier this year, Iranian hackers were implicated in a cyberattack against the medical device company **Stryker**, further highlighting the diverse range of threat actors targeting healthcare infrastructure.
A recent report by **IBM** revealed that for the twelfth consecutive year, data breaches within the healthcare industry in 2025 incurred the highest financial cost for victims compared to any other sector, averaging $7.4 million per incident. Furthermore, these breaches took significantly longer to detect and resolve, averaging 279 days β over five weeks longer than the average incident across all industries.