Cybersecurity News

CISA Warns of Continued Log4Shell Exploits in VMware Horizon Systems

by

The Cybersecurity and Infrastructure Security Agency (CISA) and the United States Coast Guard Cyber Command (CGCYBER) released a joint cybersecurity advisory to warn organizations of continued...

As API Adoption in Healthcare Skyrockets, Cybersecurity Risks Follow

by

Application Programming Interface (API) adoption is steadily increasing in the healthcare sector, but APIs do not come without cybersecurity risks. In fact, Gartner predicted that API attacks would...

Select Hillrom Electrocardiograph Products Impacted by Medical Device Vulnerabilities

by

Two medical device vulnerabilities in select Hillrom electrocardiograph products may cause unauthorized access and security risks, a Cybersecurity and Infrastructure Security Agency (CISA) ICS advisory...

HHS Provides Tips For Strengthening Cyber Posture in Healthcare

by

The HHS Health Sector Cybersecurity Coordination Center (HC3) issued a brief with tips for strengthening cyber posture in healthcare. HC3 defined cyber posture as “the overall strength of an...

CISA, FBI, NSA Provide Tips For Countering China-Backed Cyber Threats

by

The Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA), and the Federal Bureau of Investigation (FBI) released a joint cybersecurity advisory containing tips...

Bill Calls on FDA to Regularly Update Medical Device Security Guidelines

by

The recently introduced Strengthening Cybersecurity for Medical Devices Act called on the US Food and Drug Administration (FDA) to review and update its medical device security guidelines more...

54% of CISOs Struggle to Convince Board to Prioritize Cybersecurity Investments

by

Chief information security officers (CISOs) play a crucial role in advocating for cybersecurity investments and communicating risk to the board. Although significant progress has been made, 54 percent...

RSA Conference: H-ISAC, Microsoft, 30+ Others Sign Cyber Risk Management Pledge

by

At the RSA Conference on Wednesday, cybersecurity experts announced that 37 companies and organizations from eight countries signed a cyber risk management pledge, promising to bolster cyber...

RSA Conference: Experts Say Medical Device Security Trending in Right Direction

by

At the RSA Conference, currently being held in San Francisco and virtually, panelists gathered for a session to discuss medical device security challenges. Audience members posed questions about the...

Emotet Reemerges as Prominent Cyber Threat to Healthcare

by

Emotet continues to be a prominent cyber threat to healthcare in 2022, HHS’ Health Sector Cybersecurity Coordination Council (HC3) explained in its most recent brief. Emotet is an advanced...

Healthcare Organizations Struggle to Obtain Cyber Insurance Policies, Report Shows

by

Healthcare ransomware attacks are not slowing down, prompting an increased demand for reliable cyber insurance policies. But as healthcare cyberattacks skyrocket, cyber insurers are pushing up prices...

BD, CISA Warn of Medical Device Security Vulnerabilities in BD Synapsys, Pyxis Devices

by

Becton, Dickinson and Company (BD) disclosed two medical device security vulnerabilities found in certain Synapsys and Pyxis devices. The Pyxis vulnerabilities (CVE-2022-22767) received a CVSS score of...

FDA Urges Healthcare to Patch Severe Illumina Cybersecurity Vulnerabilities

by

The US Food and Drug Administration (FDA) urged healthcare organizations to immediately patch severe cybersecurity vulnerabilities impacting certain Illumina medical devices. The vulnerabilities impact...

FBI Blocked Iranian-Backed Cyberattack on Boston Children’s Hospital Last Year

by

Federal Bureau of Investigation (FBI) Director Christopher Wray revealed that Iranian government-backed hackers attempted to execute a cyberattack against Boston Children’s Hospital in June...

MDIC, HSCC Team Up to Establish Medical Device Security Benchmarks

by

The Medical Device Innovation Consortium (MDIC) and the Healthcare and Public Health Sector Coordinating Council (HSCC), in partnership with Booz Allen Hamilton, created a new survey with the goal of...

IT Specialist Charged in Healthcare Cyberattack Highlights Insider Threat Risks

by

An IT specialist has been charged for allegedly hacking into a Chicago healthcare organization’s server in 2018, the Department of Justice (DOJ) announced. Aaron Lockner, 35, of Downers Grove,...

Clearwater Acquires CynergisTek for $17.7M to Tackle Healthcare Cybersecurity

by

With a focus on healthcare cybersecurity and compliance, CynergisTek entered into a definitive agreement to be acquired by Clearwater for $17.7 million. CynergisTek provides cybersecurity, compliance,...

Shadow Code, Third-Party Scripts Pose Healthcare Cybersecurity Risks

by

Third-party scripts can facilitate digital transformation by allowing development teams to introduce enhanced functionality to web applications without having to create or maintain them. But these...

HC3 Highlights Tactics, Techniques of Four Major Russian Cyber Organizations

by

The Health Sector Cybersecurity Coordination Center (HC3) issued a brief outlining the tactics, techniques, and procedures (TTPs) of four major cyber organizations linked to the Russian Intelligence...

Verizon DBIR: Healthcare Cyberattacks Increase, Insider Threats Remain

by

The Verizon Business 2022 Data Breach Investigations Report (DBIR) showed an increase in cyberattacks across all sectors, and healthcare was no exception. Accounting for all analyzed sectors,...