Cybernews Healthcare Workers Misled by Phishing Test Posing as Paid Day Off
Article Content
- •A phishing test disguised as a paid day off angered healthcare workers in Newfoundland and Labrador.
- •The email was sent from an external domain and falsely promised recognition for hard work.
- •Union leaders called the test 'cruel' and 'insensitive' amid ongoing staff burnout.
In Newfoundland and Labrador, Canada, healthcare workers received a phishing email promising a paid day off, which was actually a cybersecurity test. The email, framed as recognition for their hard work during the rollout of the CorCare system, was sent from an external domain. Union leaders condemned the test as 'cruel' and 'insensitive,' especially given the ongoing burnout and staffing shortages in the sector. The phishing simulation aimed to assess employees' vulnerability to social engineering attacks but backfired, leading to widespread anger among staff. Reports indicate that at least one employee resigned due to the incident. The interim CEO of Newfoundland and Labrador Health Services apologized for the inappropriate approach and promised a review of future awareness exercises. The incident highlights the delicate balance required in cybersecurity training, particularly in sensitive environments like healthcare.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track Newfoundland And Labrador Health Services in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…