Cybersecurity strategies
The healthcare sector faces a variety of cyberthreats, but experts are constantly working to provide organizations with reliable cybersecurity strategies to address them. Learn about the latest tactics for tackling cyber risk, with efforts led by security practitioners, federal agencies and leading cybersecurity companies.
Top Stories
-
News
20 Nov 2024
HHS has not adopted all GAO cybersecurity recommendations
GAO said that it is still waiting on HHS to implement several cybersecurity recommendations laid out for the department in various GAO reports. Continue Reading
By- Jill McKeon, Associate Editor
-
Feature
18 Nov 2024
Mitigating risk as healthcare supply chain attacks prevail
A focus on cyber resilience is essential for mitigating the risk of healthcare supply chain attacks, which have the potential to cause widespread disruptions. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Dec 2022
HC3 Explores Cybersecurity Implications of Automation in Healthcare
HC3’s latest brief dives into the history of automation, its uses in cybersecurity, and how it may impact healthcare. Continue Reading
By- Jill McKeon, Associate Editor
-
News
09 Dec 2022
Conway Regional Medical Center Reaches $295K Settlement Over Healthcare Data Breach
The Arkansas medical center fell victim to a phishing scam in 2019, leading to a healthcare data breach lawsuit. Continue Reading
By- Jill McKeon, Associate Editor
-
News
08 Dec 2022
HC3: Royal Ransomware Impacts Healthcare Sector
Royal ransomware appears to consist of experienced threat actors from other ransomware groups, HC3 noted. Continue Reading
By- Jill McKeon, Associate Editor
-
Feature
07 Dec 2022
3 Trends From the HIMSS Healthcare Cybersecurity Forum
Enhancing collaboration and communication, managing third-party risk, and balancing innovation with security were among the top trends discussed at this year’s HIMSS Healthcare Cybersecurity Forum. Continue Reading
By- Jill McKeon, Associate Editor
-
News
07 Dec 2022
AHA Shares Recommendations Regarding Cybersecurity Policy Proposals
Hospitals and healthcare systems need future support through cybersecurity policies to address cybersecurity threats, the AHA stated following Senator Mark R. Warner’s policy options paper. Continue Reading
By- Sarai Rodriguez
-
News
06 Dec 2022
Balancing Digital Transformation With Healthcare Cybersecurity
Forrester experts shared best practices for maintaining healthcare cybersecurity amid rapid digital transformation at the HIMSS Healthcare Cybersecurity Forum in Boston. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
06 Dec 2022
3 Strategies for Healthcare Merger, Acquisition Cybersecurity Due Diligence
Assessing the target company’s cyber resiliency and establishing a list of non-negotiables are among the top strategies for conducting healthcare merger and acquisition cybersecurity due diligence. Continue Reading
By- Jill McKeon, Associate Editor
-
News
05 Dec 2022
CISA, FBI Alert Healthcare Sector of Cuba Ransomware Tactics
The Cuba ransomware group has collected over $60M in ransom payments and comprised more than 100 critical infrastructure organizations, including many within the healthcare sector. Continue Reading
By- Sarai Rodriguez
-
News
02 Dec 2022
Weak Connected Medical Device Security Increases Cyberattack Threats
A new survey found that healthcare organizations with more connected medical devices have a 24 percent greater risk for cyberattacks, underscoring a need for more medical device security. Continue Reading
By- Sarai Rodriguez
-
News
01 Dec 2022
San Juan Regional Medical Center Reaches Settlement Following Healthcare Data Breach
The class-action lawsuit stemmed from a 2020 healthcare data breach that impacted nearly 69,000 individuals. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
30 Nov 2022
How HITECH Recognized Security Practices Boost Healthcare Cybersecurity
The voluntary use of HITECH recognized security practices can help covered entities bolster their security postures and better protect themselves against top healthcare cybersecurity threats. Continue Reading
By- Jill McKeon, Associate Editor
-
News
30 Nov 2022
New Connected Device Security Maturity Model Helps Orgs Strengthen Cybersecurity
Ordr published a connected device security maturity model containing five steps to help organizations manage connected device risks and improve their cybersecurity postures. Continue Reading
By- Jill McKeon, Associate Editor
-
News
29 Nov 2022
Healthcare Industry Remains a Top Victim of Ransomware Attacks
Guidepoint Research’s latest ransomware report revealed that the healthcare industry was the second most targeted industry by ransomware attacks specifically targeted by groups like Everest and LockBit. Continue Reading
By- Sarai Rodriguez
-
News
22 Nov 2022
Lorenz Ransomware Targets Large Healthcare Orgs, HC3 Warns
Lorenz ransomware targets large organizations via “big-game hunting” and is known to publish data publicly during the extortion process. Continue Reading
By- Jill McKeon, Associate Editor
-
News
21 Nov 2022
OIG: HHS Must Modernize Its Approach to Cybersecurity
OIG called on HHS to modernize its cybersecurity approaches and improve data governance efforts. Continue Reading
By- Jill McKeon, Associate Editor
-
News
21 Nov 2022
Forefront Dermatology To Pay $3.75M In Healthcare Data Breach Settlement
More than 2.4 million individuals were impacted by the May 2021 healthcare data breach at Forefront Dermatology. Continue Reading
By- Jill McKeon, Associate Editor
-
News
18 Nov 2022
NewYork-Presbyterian Hospital Notifies 12K of Healthcare Data Breach
Along with NewYork-Presbyterian Hospital, Gateway Ambulatory Surgery Center and CorrectCare Integrated Health also reported healthcare data breaches recently. Continue Reading
By- Jill McKeon, Associate Editor
-
News
18 Nov 2022
HHS, FBI, CISA Warn Healthcare of Ongoing Hive Ransomware Threats
Hive ransomware actors have raked in $100 million in ransom payments and victimized more than 1,300 companies worldwide, including many in the healthcare sector. Continue Reading
By- Jill McKeon, Associate Editor
-
News
17 Nov 2022
Holiday, Weekend Ransomware Attacks Pose Threats to Healthcare Cybersecurity
A new study found that holiday and weekend ransomware attacks may result in greater revenue losses and longer recovery times for some organizations. Continue Reading
By- Jill McKeon, Associate Editor
-
News
16 Nov 2022
FDA, MITRE Publish Updated Medical Device Security Incident Response Playbook
The updated playbook highlights additional key medical device security considerations and contains a new resource appendix to help healthcare organizations navigate incident preparedness and response. Continue Reading
By- Jill McKeon, Associate Editor
-
News
15 Nov 2022
Man Charged For Involvement in LockBit Ransomware Campaign
The LockBit ransomware variant has been used to target the healthcare sector in the past. Continue Reading
By- Jill McKeon, Associate Editor
-
News
14 Nov 2022
CISA: 3 Steps to Improve Cybersecurity Vulnerability Management
Automation and increased prioritization are crucial to improving efficiency within cybersecurity vulnerability management, CISA’s executive assistant director for cybersecurity wrote. Continue Reading
By- Jill McKeon, Associate Editor
-
News
10 Nov 2022
HC3 Warns Healthcare Sector of Venus Ransomware Variant
At least one US healthcare organization has suffered a Venus ransomware attack recently, HC3 noted. Continue Reading
By- Jill McKeon, Associate Editor
-
News
09 Nov 2022
Lurie Children’s Hospital Resolves Healthcare Data Breach Lawsuit
Lurie Children’s Hospital agreed to implement additional security measures to settle a healthcare data breach lawsuit. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
08 Nov 2022
3 Ways to Avoid Repeat Healthcare Ransomware Attacks
Organizations can decrease their chances of becoming repeat healthcare ransomware attack victims by focusing on thorough remediation, ensuring vulnerability management, and learning from other victims. Continue Reading
By- Jill McKeon, Associate Editor
-
News
08 Nov 2022
Censinet, AHA, KLAS Partner On Healthcare Cybersecurity Benchmarking Study
The study is currently enrolling hospital and health system participants and aims to establish healthcare cybersecurity benchmarks for the sector. Continue Reading
By- Jill McKeon, Associate Editor
-
News
07 Nov 2022
Aveanna Healthcare Reaches $425K Settlement After Healthcare Data Breach
Aveanna Healthcare agreed to pay $425,000 and adopt new security measures after several phishing-related healthcare data breaches impacted over 4,000 Massachusetts individuals. Continue Reading
By- Sarai Rodriguez
-
News
07 Nov 2022
HC3 Explores Iranian Cyber Threat Landscape in Latest Brief
The Iranian cyber threat landscape is a known threat to the US healthcare sector. Continue Reading
By- Jill McKeon, Associate Editor
-
News
03 Nov 2022
CISA, FBI, MS-ISAC Provide Guidelines For DDoS Incident Response
CISA, the FBI, and MS-ISAC offered several response procedures that federal and private agencies should take to prevent and remediate a DDoS attack. Continue Reading
By- Sarai Rodriguez
-
News
03 Nov 2022
VA Senator Seeks Feedback on Healthcare Cybersecurity Policy Options
In a policy options paper, Senator Mark R. Warner examined current healthcare cybersecurity challenges and ways that the federal government could further help the sector. Continue Reading
By- Jill McKeon, Associate Editor
-
News
01 Nov 2022
White House Declares November Critical Infrastructure Security and Resilience Month
The proclamation aims to bring attention to the importance of critical infrastructure security to safeguard against cyber and physical threats. Continue Reading
By- Jill McKeon, Associate Editor
-
News
31 Oct 2022
Keystone Health Faces Lawsuit Over Healthcare Data Breach
Keystone Health suffered a healthcare data breach that impacted 235,237 individuals and potentially exposed protected health information. Continue Reading
By- Jill McKeon, Associate Editor
-
News
31 Oct 2022
HC3 Urges Healthcare to Patch OpenSSL Cybersecurity Vulnerability
OpenSSL will receive an update on November 1 to resolve a cybersecurity vulnerability, and organizations should prioritize patching immediately upon release. Continue Reading
By- Jill McKeon, Associate Editor
-
News
27 Oct 2022
MDIC Releases Medical Device Security Maturity Benchmarking Report
The medical device security maturity benchmarking report provides a baseline for assessing the current state of device cybersecurity efforts. Continue Reading
By- Jill McKeon, Associate Editor
-
News
26 Oct 2022
ACLU of RI Sues RIPTA, UnitedHealthcare Over Healthcare Data Breach
The Rhode Island Public Transit Authority (RIPTA) and UnitedHealthcare New England are facing a lawsuit stemming from an August 2021 healthcare data breach. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
26 Oct 2022
Exploring Security, Privacy Team Roles in Healthcare Cyber Incident Response
It is crucial that security and privacy teams are on the same page throughout the healthcare cyber incident response process. Continue Reading
By- Jill McKeon, Associate Editor
-
News
24 Oct 2022
Daixin Team Ransomware Group Actively Targeting Healthcare Sector
The Daixin Team ransomware group has been observed encrypting healthcare servers and exfiltrating protected health information, the FBI, HHS, and CISA stated. Continue Reading
By- Jill McKeon, Associate Editor
-
News
20 Oct 2022
Easterly Reaffirms CISA’s Focus On Healthcare Cybersecurity at mWISE
CISA Director Jen Easterly said that the agency would be focusing on water, education, and healthcare cybersecurity in upcoming federal efforts. Continue Reading
By- Jill McKeon, Associate Editor
-
News
20 Oct 2022
Talent Remains in High Demand Amid Cybersecurity Workforce Shortage
Recent data shows that employee demand for cybersecurity talent has increased 2.4 times faster than the overall rate across the nation; meanwhile, the cybersecurity workforce shortage persists. Continue Reading
By- Sarai Rodriguez
-
News
19 Oct 2022
EyeMed Vision Care to Pay $4.5M to NY Over Healthcare Data Breach
EyeMed Vision Care agreed to pay a $4.5 million penalty to New York State for Department of Financial Services violations stemming from a healthcare data breach. Continue Reading
By- Jill McKeon, Associate Editor
-
News
19 Oct 2022
CISA Encourages Orgs To Go Further Than MFA, Adopt FIDO Authentication
CISA Director Jen Easterly urged business leaders to ensure that FIDO authentication is part of their organization’s MFA implementation plan. Continue Reading
By- Jill McKeon, Associate Editor
-
News
18 Oct 2022
Many Healthcare Orgs Suffer IT Outages After Ransomware Attacks
A Trend Micro study found that 86 percent of surveyed healthcare organizations hit by ransomware attacks had experienced IT outages. Continue Reading
By- Sarai Rodriguez
-
Answer
18 Oct 2022
White House Sets Sights on New Healthcare Cybersecurity Standards
Anne Neuberger said that the creation of additional healthcare cybersecurity standards and guidance would be an upcoming area of focus for the White House. Continue Reading
By- Jill McKeon, Associate Editor
-
News
14 Oct 2022
United Health Centers of the San Joaquin Valley Reaches Proposed Data Breach Settlement
United Health Centers of the San Joaquin Valley reached a proposed settlement to resolve allegations relating to an August 2021 data breach. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
13 Oct 2022
Key Ways to Manage the Legal Risks of a Healthcare Data Breach
Managing the legal risks of a healthcare data breach requires organizations to view risk holistically and collaborate with key stakeholders. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Oct 2022
Sector's Increasing Interconnectedness Poses Healthcare Cybersecurity Risks
As healthcare organizations increase their reliance on connected devices, the sector will also have to adjust its security strategies to keep pace with growing healthcare cybersecurity risks. Continue Reading
By- Jill McKeon, Associate Editor
-
News
11 Oct 2022
Abuse of Legitimate Tools Threatens Healthcare Cybersecurity
Threat actors have repeatedly abused legitimate tools like Cobalt Strike and PowerShell to threaten healthcare cybersecurity. Continue Reading
By- Jill McKeon, Associate Editor
-
News
07 Oct 2022
Man Sentenced to 20 Years in Prison For NetWalker Ransomware Attacks
A Canadian man was sentenced to 20 years in prison for executing NetWalker ransomware attacks against healthcare organizations and other industries during the pandemic. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
06 Oct 2022
Experts Weigh in on Medical Device Security Exit from FDA User Fee Bill
Experts see the exclusion of medical device security from the FDA user fee reauthorization bill as a missed opportunity, but there is still optimism for future efforts. Continue Reading
By- Jill McKeon, Associate Editor
-
News
05 Oct 2022
LifeBridge Health Settles Healthcare Data Breach Lawsuit for $9.5M
Baltimore-based LifeBridge Health suffered a healthcare data breach that spanned 18 months beginning in 2016 and impacted 530,000 individuals. Continue Reading
By- Jill McKeon, Associate Editor
-
News
04 Oct 2022
Microsoft Exchange Zero-Day Vulnerabilities May Impact Healthcare Cybersecurity
Because Microsoft Exchange is so commonly used, the two recently discovered zero-day vulnerabilities may have an impact on healthcare cybersecurity. Continue Reading
By- Jill McKeon, Associate Editor
-
News
03 Oct 2022
White House Highlights Cybersecurity Awareness Month
President Biden called attention to Cybersecurity Awareness Month and noted that the government “cannot meet our cyber resilience goals alone.” Continue Reading
By- Jill McKeon, Associate Editor
-
News
30 Sep 2022
AHA Expresses Support for Healthcare Cybersecurity Act
US Representatives Jason Crow and Brian Fitzpatrick recently introduced a House companion to the Healthcare Cybersecurity Act, which advanced in the Committee on Homeland Security and Governmental Affairs in March. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
28 Sep 2022
How Rural Hospitals Can Tackle Healthcare Cybersecurity Risks
Rural hospitals are up against the same healthcare cybersecurity risks as larger organizations but may have limited resources to combat them. Continue Reading
By- Jill McKeon, Associate Editor
-
News
28 Sep 2022
OIG Finds NIH Health Grant Program Needs Stricter Cybersecurity Controls
OIG audited NIH’s health grant program and found that it did not have adequate cybersecurity controls and risk assessment protocols in place to safeguard sensitive data. Continue Reading
By- Jill McKeon, Associate Editor
-
News
27 Sep 2022
Humana Discloses Third-Party Data Breach at Choice Health
The third-party data breach originated at Choice Health, which sells Medicare products on Humana’s behalf. Continue Reading
By- Jill McKeon, Associate Editor
-
News
27 Sep 2022
CISA, NSA Provide OT, ICS Defense Strategies to Critical Infrastructure
OT and industrial control system assets are an enticing target for threat actors, CISA and the NSA suggested in a cybersecurity advisory to critical infrastructure. Continue Reading
By- Jill McKeon, Associate Editor
-
News
26 Sep 2022
HC3 Details APT41 Cyberattack Tactics, Risks to Healthcare Cybersecurity
APT41 poses a threat to healthcare cybersecurity and has been observed targeting the healthcare and pharmaceutical sectors in the past. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
26 Sep 2022
6 Healthcare Cybersecurity, Operational Strategies For Successful CISOs
Mastering effective communication, implementing a risk-based healthcare cybersecurity approach, and attracting top cyber talent are all parts of a CISO’s job description. Continue Reading
By- Jill McKeon, Associate Editor
-
News
26 Sep 2022
Understanding the Value of Digital Identity Assessment to Healthcare
Digital identity assessment with dynamic decisioning gives access to trusted users while preventing unauthorized access that could lead to a health data breach. Continue Reading
By- LexisNexis Risk Solutions
-
News
23 Sep 2022
Certain Medtronic Insulin Pumps Pose Healthcare Cybersecurity Risks, FDA Says
The FDA issued an alert about certain models of the Medtronic MiniMed insulin pump, which could result in unauthorized access and other healthcare cybersecurity risks. Continue Reading
By- Jill McKeon, Associate Editor
-
News
22 Sep 2022
HC3 Alerts Healthcare Sector of Monkeypox-Themed Phishing Scheme
Threat Actors are using a monkeypox-themed phishing scheme to lure healthcare providers into clicking on a malicious link. Continue Reading
By- Sarai Rodriguez
-
Feature
22 Sep 2022
How Cybersecurity Vulnerability Disclosures Help the Healthcare Community
Cybersecurity vulnerability disclosures are essential to spreading awareness, increasing transparency, and encouraging collaboration in the healthcare community. Continue Reading
By- Jill McKeon, Associate Editor
-
News
20 Sep 2022
Ambry Genetics Reaches $12.25M Settlement Over Healthcare Data Breach
The genetics company reached a multi-million-dollar settlement following a 2020 healthcare data breach that impacted more than 200,000 individuals. Continue Reading
By- Jill McKeon, Associate Editor
-
News
19 Sep 2022
FBI: Cyber Criminals Use Social Engineering to Target Healthcare Payment Processors
Cyber criminals are increasingly using social engineering techniques and publicly available PII to target healthcare payment processors and redirect victim payments. Continue Reading
By- Jill McKeon, Associate Editor
-
News
16 Sep 2022
Pen Testing Data Highlights Gaps in Healthcare Cybersecurity
Pen testing data from Coalfire shows that unpatched vulnerabilities and outdated software remain significant bottlenecks to healthcare cybersecurity. Continue Reading
By- Jill McKeon, Associate Editor
-
News
16 Sep 2022
HHS Appoints Melanie Fontes Rainer as New OCR Director
Melanie Fontes Rainer, who previously served as the acting director of the Office for Civil Rights (OCR), will now lead the enforcement of federal civil rights such as HIPAA as OCR Director. Continue Reading
By- Sarai Rodriguez
-
News
15 Sep 2022
DOJ Charges 3 Iranian Nationals Over Critical Infrastructure Ransomware Attacks
The three individuals allegedly executed ransomware attacks on multiple US critical infrastructure entities, including an attempted attack on Boston Children’s Hospital. Continue Reading
By- Jill McKeon, Associate Editor
-
News
14 Sep 2022
FBI Warns of Patient Safety, Security Risks Associated With Legacy Medical Devices
Unpatched and legacy medical devices can negatively impact a healthcare facility’s operational functions, patient safety, and data security, the FBI warned. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Sep 2022
HC3 Details Healthcare Cybersecurity Implications of AI, 5G, Emerging Tech
HC3 outlined the cybersecurity implications of emerging technologies such as AI, 5G, and smart hospitals in its latest brief. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Sep 2022
Healthcare Cybersecurity Starts with Identity and Access Security
HIPAA-covered entities must work urgently to address identity and access security and prevent avoidable healthcare breaches. Continue Reading
By- SecureLink an Imprivata Company
-
News
09 Sep 2022
Medical Device Security Vulnerabilities Discovered in Baxter Infusion Pumps
If exploited, these medical device security vulnerabilities could result in alteration of system configuration and improper access to sensitive data. Continue Reading
By- Jill McKeon, Associate Editor
-
News
08 Sep 2022
CO Urology Practice Resolves Healthcare Data Breach Lawsuit With Settlement
The Urology Center of Colorado resolved a healthcare data breach lawsuit after a 2021 breach that impacted more than 137,000 individuals. Continue Reading
By- Jill McKeon, Associate Editor
-
News
08 Sep 2022
How Healthcare Cyberattacks Can Impact Patient Safety, Care Delivery
Surveyed healthcare security professionals reported adverse patient safety effects resulting from healthcare cyberattacks, including a hike in mortality rates and longer hospital stays. Continue Reading
By- Jill McKeon, Associate Editor
-
News
06 Sep 2022
OIG Calls On HRSA to Improve Data Security of Organ Transplant Network
In a recent audit, OIG called on HRSA to improve the data security and oversight of the Organ Procurement and Transplantation Network (OPTN) to protect transplant data. Continue Reading
By- Jill McKeon, Associate Editor
-
News
06 Sep 2022
5 Security Vulnerabilities Found in Contec Vital Signs Patient Monitors
CISA said that the security vulnerabilities found in certain Contec Health vital signs patient monitor devices could open the door to DDoS attacks. Continue Reading
By- Jill McKeon, Associate Editor
-
News
31 Aug 2022
Health-ISAC Provides Zero Trust Security Guidance to Healthcare CISOs
Zero trust security strategies can help healthcare CISOs enhance their organization’s security architecture, but not without unique challenges. Continue Reading
By- Jill McKeon, Associate Editor
-
News
31 Aug 2022
Evil Corp Cybercriminal Syndicate Poses Threat to Healthcare Cybersecurity
HC3 described Russia-based Evil Corp as “one of the most capable cybercriminal syndicates in the world,” making them a natural threat to healthcare cybersecurity. Continue Reading
By- Jill McKeon, Associate Editor
-
News
30 Aug 2022
FTC Sues Data Broker, Condemns Improper Data Privacy Practices
The FTC underscored its commitment to fighting against improper location and health data privacy practices in a recent lawsuit against data broker Kochava. Continue Reading
By- Jill McKeon, Associate Editor
-
News
29 Aug 2022
Proprietary Info, Source Code Stolen in LastPass Data Breach
Luckily, cybercriminals did not manage to access the master passwords of LastPass’ 25 million users in a recent data breach that impacted the password manager service. Continue Reading
By- Jill McKeon, Associate Editor
-
News
26 Aug 2022
Humana, Cotiviti Reach Settlement Over Insider Data Breach
Humana experienced an insider data breach in 2020 when a contractor under Cotiviti inappropriately disclosed patient data for unauthorized training purposes. Continue Reading
By- Jill McKeon, Associate Editor
-
News
25 Aug 2022
KLAS Evaluates Healthcare Cybersecurity, Data Privacy Consulting Vendors
Organizations reported being most satisfied with Impact Advisors and First Health Advisory among a variety of healthcare cybersecurity and data privacy consulting vendors, KLAS reported. Continue Reading
By- Jill McKeon, Associate Editor
-
News
25 Aug 2022
HC3 Warns Healthcare Sector of Karakurt Ransomware Group
Since June, Karakurt ransomware group has executed at least four cyberattacks against US healthcare organizations. Continue Reading
By- Jill McKeon, Associate Editor
-
News
24 Aug 2022
US Orgs Have Suffered 5,000 Healthcare Data Breaches Since 2009
More than 342 million medical records were impacted by the thousands of healthcare data breaches that occurred from 2009 to June 2022. Continue Reading
By- Jill McKeon, Associate Editor
-
News
23 Aug 2022
HC3 Notes Uptick in Healthcare Vishing Attacks, Social Engineering
Vishing attacks, or "voice phishing," involve a threat actor attempting to scam an individual over the phone. Continue Reading
By- Jill McKeon, Associate Editor
-
News
19 Aug 2022
Apple Issues Urgent Cybersecurity Updates to Fix Zero-Day Vulnerabilities
Healthcare organizations should urgently apply recommended cybersecurity updates to defend against zero-day vulnerabilities in certain Apple products. Continue Reading
By- Jill McKeon, Associate Editor
-
News
18 Aug 2022
Florida Orthopaedic Institute Reaches $4M Settlement Over Data Breach
A 2020 data breach at Florida Orthopaedic Institute impacted 640,000 individuals and resulted in data being encrypted. Continue Reading
By- Jill McKeon, Associate Editor
-
News
17 Aug 2022
Novant Health Notifies 1.3M Patients of Unauthorized PHI Disclosure Caused By Meta Pixel
Novant Health informed patients that the use of Meta pixel code, which was used in its patient portal, potentially resulted in an unauthorized disclosure of PHI. Continue Reading
By- Jill McKeon, Associate Editor
-
News
16 Aug 2022
Zero Trust Adoption Reaches Record High in Healthcare
Okta found that 58% of surveyed healthcare organizations started implementing zero trust initiatives this year, compared to just 37% last year. Continue Reading
By- Jill McKeon, Associate Editor
-
News
15 Aug 2022
Cyberspace Solarium Co-Chairs Call For HHS Briefing on Healthcare Cybersecurity
In a letter to HHS Secretary Becerra, Senator Angus King and Representative Mike Gallagher urged HHS to disclose the current status of healthcare cybersecurity efforts. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Aug 2022
Threat Actors Use Evernote-Themed Phishing Scheme to Attack Healthcare Organizations
HC3 warned the healthcare sector of a phishing scheme that lures victims to an Evernote site that contains a downloadable Trojan file. Continue Reading
By- Jill McKeon, Associate Editor
-
News
12 Aug 2022
CISA, FBI Warn Healthcare Sector of Zeppelin Ransomware
Zeppelin ransomware, which relies on RDP exploitation and phishing campaigns, poses a significant threat to the healthcare sector. Continue Reading
By- Jill McKeon, Associate Editor
-
Answer
11 Aug 2022
Top Mid-Year Healthcare Cybersecurity Trends
Experts share insights on this year’s healthcare cybersecurity trends, citing the continued prominence of ransomware and ongoing medical device security risks. Continue Reading
By- Jill McKeon, Associate Editor
-
News
10 Aug 2022
Dental Care Alliance Reaches $3M Proposed Settlement Over Healthcare Cyberattack
Dental Care Alliance (DCA) suffered a month-long healthcare cyberattack in December 2020 that impacted 1 million patients. Continue Reading
By- Jill McKeon, Associate Editor
-
News
10 Aug 2022
Disaster Preparedness: Tips For Fostering Resilience Across Your Workforce
Fostering resilience across your workforce through customized security awareness training and tabletop exercises can help organizations enhance disaster preparedness efforts. Continue Reading
By- Amazon Web Services
-
News
09 Aug 2022
HC3 Provides Tips For Maintaining IoT Security in Healthcare
IoT security is crucial to safeguarding protected health information (PHI) and reducing vulnerabilities in any healthcare setting, HC3 noted in an analyst note. Continue Reading
By- Jill McKeon, Associate Editor
-
News
09 Aug 2022
CA Health System Reaches $340K Settlement Over Healthcare Data Breach
Salinas Valley Memorial Healthcare System agreed to pay $340,000 to settle a class-action lawsuit over a 2020 healthcare data breach. Continue Reading
By- Jill McKeon, Associate Editor
-
News
08 Aug 2022
CISA Sheds Light On Last Year’s Top Malware Strains
CISA provided details about 2021’s top malware strains in its latest advisory, including information about TrickBot, Qakbot, Remcos, and more. Continue Reading
By- Jill McKeon, Associate Editor
-
News
05 Aug 2022
Assessing the Risk of Poorly Configured, Internet-Exposed Protocols
A new report sheds light on internet-exposed protocols and provides best practices for mitigating risk. Continue Reading
By- Jill McKeon, Associate Editor
-
Feature
05 Aug 2022
How to Identify, Address Insider Threats in Healthcare
Stories of malicious external threat actors may dominate headlines, but insider threats can be equally damaging to healthcare cybersecurity. Continue Reading
By- Jill McKeon, Associate Editor