What is confirmed
On October 2, UIC reported unauthorised activity on parts of its College of Medicine network involving ransomware.
The institution said affected systems had been restored, its main network was unaffected, and patient care was not disrupted.
What it means
Unauthorised actors obtained data from College of Medicine servers. The institution was still assessing whether personal, research or academic information was involved.
Restoring service does not resolve the confidentiality investigation: availability and data exposure require separate follow-up.
What this incident reveals
Unauthorised actors obtained data from College of Medicine servers. The institution was still assessing whether personal, research or academic information was involved.
Practical steps to take
Isolate affected systems promptly and preserve technical evidence.
Review backups, privileged accounts and exposed remote access.
What to do
Isolate affected systems promptly and preserve technical evidence.
Review backups, privileged accounts and exposed remote access.
Notify affected individuals once the data scope is established.
Use the related SecurCheck tool, then confirm important decisions with an official source.