Endpoint Security

Ransomware Attacks Delivered Via Phishing Campaigns on the Rise

by Jessica Davis

Proofpoint researchers detected an increase in the number of email-based phishing campaigns used to deploy ransomware attacks as a first-stage payload over the last month. A stark...

UCSF Pays $1.14M to NetWalker Hackers After Ransomware Attack

by Jessica Davis

The University of California San Francisco recently paid a $1.14 million ransom demand, after NetWalker threat actors infected several servers of its School of Medicine with ransomware, first reported...

Microsoft Again Urges Exchange Server Patch, as Attacks Resurge

by Jessica Davis

Microsoft is once again urging organizations to apply a patch to a critical vulnerability found in some Exchange Servers. The Department of Homeland Security first alerted to a surge in attacks on the...

Most At-Risk Medical Devices: PACS, HL7 Gateway, Radiotherapy Systems

by Jessica Davis

More than 35 percent of the workstations used in healthcare are operating on unsupported versions of Windows, with Picture Archiving and Communication Systems (PACS) and HL7 gateway among the riskiest...

New Malware Campaign Targets Unpatched Windows Vulnerabilities

by Jessica Davis

Palo Alto Networks’ Unit 42 research team has identified a new malware campaign known as Lucifer, which targets a long list of unpatched, high and critical Windows vulnerabilities for both...

DHS CISA: Serious Vulnerabilities Found in 6 Medical Device Systems

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency issued alerts for vulnerabilities found in six different medical devices manufactured by Biotronik, Baxter, and BD...

Care New England Resolves Weeklong Cyberattack Impacting Servers

by Jessica Davis

Rhode Island-based Care New England (CNE) has fully recovered from a cyberattack that hit its servers nearly a week ago on June 16, which drove the provider to EHR downtime and forced the shutdown of...

Majority of COVID-19 Contact Tracing Apps Lack Adequate Security

by Jessica Davis

The vast majority of government COVID-19 contact tracing apps from across the world, including the US, don’t employ sufficient security protections, making the apps easy targets for hackers,...

DHS Alerts to Ransomware Campaign Targeting Remote Access Systems

by Jessica Davis

The Department of Homeland Security Cybersecurity and Infrastructure Security Agency issued an alert, urging enterprise organizations to review recent insights from the New Zealand Computer Emergency...

AGS Urge Apple, Google to Ensure Privacy of COVID-19 Contact Tracing

by Jessica Davis

Following reports that showed the majority of consumers would not opt into using COVID-19 contact tracing apps, 39 bipartisan members of the National Association of Attorneys General (NAAG) are urging...

Millions of IoT Medical Devices Impacted by Ripple20 Vulnerabilities

by Jessica Davis

Hundreds of millions of connected devices, including IoT medical devices, are impacted by a group of 19 vulnerabilities known as Ripple20, found in the devices’ TCP/IP communication stack,...

Cano Health Reports 2-Year Email Hack Impacting Patient Data

by Jessica Davis

Florida-based Cano Health, a population health management vendor, recently began notifying patients that their data was potentially compromised, after hackers breached three employee email accounts...

Email Critical Enterprise Risk, as Impersonation Attacks Increase

by Jessica Davis

More than half of global IT decision makers have seen a drastic increase in the number of phishing, ransomware, and impersonation attacks, as email continues to be a critical security risk to the...

Breach of Telehealth App Babylon Health Raises Privacy Concerns

by Jessica Davis

UK-Based telehealth app Babylon Health recently experienced a breach of its general practitioner platform, where users were able to access videos from other patients’ appointments, first reported...

COVID-19 Security: Reducing Risk of Temporary Hospitals, Remote Care

by Jessica Davis

The COVID-19 pandemic has fueled the pace of change in the healthcare sector, from telehealth expansion to the rapid deployment of temporary hospitals. But the increase in telework, mobile tech, remote...

Report: Unsecured, Misconfigured Databases Breached in Just 8 Hours

by Jessica Davis

New research from Comparitech shows hackers begin targeting online databases just hours after the initial setup process, finding inadvertently unsecured or misconfigured databases can be...

Cyberciminals Access PHI, Steal Gift Cards from Kentucky Health Plan

by Jessica Davis

The Commonwealth of Kentucky Personnel Cabinet is notifying nearly 1,000 Kentucky Employees’ Health Plan (KEHP) members that some of their personal and protected health information was...

DHS CISA: Threat Actors Targeting Unpatched Microsoft Windows Flaw

by Jessica Davis

Threat actors are actively targeting an unpatched critical vulnerability found in certain Microsoft Windows systems with a new, publicly available proof-of-concept (POC) code, according to a recent...

Open Ports, Phishing Key Targets in Healthcare Ransomware Attacks

by Jessica Davis

The rate of ransomware attacks reached its highest levels in 2019, with the first quarter of 2020 expected to surpass those numbers across all sectors, according to Corvus. And on healthcare entities,...

Voicemails of Remote Workers Targeted in New Phishing Campaign

by Jessica Davis

A new report from IRONSCALES shows remote healthcare workers are being targeted with a new phishing campaign. Hackers are actively working to exploit the legacy technology used to send voicemail...