Subscriber Alert: Citrix Vulnerabilities, the COVID-19 Social Engineering Attack, and an Update on the LifeLabs Breach

Kopiha Nathan
Person pointing at computer

This Subscriber Alert is intended for healthcare organizations and professionals to raise awareness of cyber threats that may impact information security and privacy. Please feel free to circulate the alert to those who are overseeing related functions.

Citrix Vulnerabilities 

According to alerts highlighted by the Canadian Centre for Cyber Security (CCCS), cybercriminals have been “observed uploading malware to vulnerable Citrix servers which adds an additional backdoor while preventing other actors from exploiting the vulnerability.” HIROC is aware that CCCS has been issuing notifications to healthcare organizations that may have been compromised. If your organization suspects it has been compromised, please contact us at For additional resources on Citrix vulnerabilities and mitigation strategies, please see Cyber Resources below.

COVID-19 Social Engineering Attack

Canadian media outlets and privacy and security enthusiasts have reported a new phishing attack that takes advantage of the COVID-19 outbreak to deliver malware. These attacks are delivered through email messages with titles such as, “Confidential Cure Solution on Corona Virus” and have been reported to deliver malware such as Emotet and AZORult which can steal personal and financial information. Phishing campaigns, also referred to as social engineering attacks, are not new to healthcare organizations and professionals. Criminals use the latest news headlines and social trends in email messages to trick employees into taking action, such as clicking on a malicious link or opening a malicious attachment. Healthcare organizations and professionals are urged to provide social engineering attack awareness training to staff, students, volunteers, independent health practitioners, etc. Organizations are also encouraged to employ appropriate technical controls to protect against such attacks. Please see below for several key resources on prevention and mitigation strategies. For more information on this threat, please see Cyber Resources below.

LifeLabs Breach Update

HIROC has been receiving queries from our Subscribers about the recent LifeLabs breach and notification requirements for patients. If you would like to speak to counsel about your obligations with respect to this breach, please reach out to us at

Cyber Resources

Here are some additional resources that may be helpful to you and your team:

If you have any questions about cyber or information security threats, please contact Kopiha Nathan, HIROC’s Privacy and Compliance Officer at