Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Channel
Podcasts Hosted by Bill Russell, Sarah Richardson, and Drex DeFord
In-depth interviews with healthcare CIOs, CISOs, and technology leaders. Bill Russell explores the decisions, strategies, and innovations shaping healthcare transformation.
Apr 1, 2025·2 Minute Drill
Drex covers two separate Oracle security incidents affecting healthcare organizations. The Rose87168 hacking group claims to have stolen 6 million user records from Oracle Cloud, now for sale on the dark web. Oracle denies the breach, but independent researchers confirm data authenticity. A second breach on older Cerner servers (not yet migrated to Oracle Cloud) exposed patient medical information, with hackers attempting to extort several US healthcare organizations. The full scope of affected
Mar 31, 2025·2 Minute Drill
Drex covers a major security breach where Trump administration officials shared classified military operation details via Signal chat with an unauthorized reporter, Broadcom's release of critical security updates for VMware tools addressing high-severity vulnerabilities, and a dramatic HHS restructuring that eliminates 10,000 positions, reduces divisions from 28 to 15, and transfers key healthcare security offices including ASPR to CDC and realigns the Office of Civil Rights overseeing HIPAA com
Mar 25, 2025·2 Minute Drill
Drex covers reports of an alleged Oracle Cloud security incident affecting login infrastructure with over 6 million records at risk across 140,000 tenants (though Oracle denies any breach), and 23andMe's bankruptcy filing. Security recommendations include rotating credentials, resetting passwords for Oracle Cloud users, and downloading then deleting personal genetic data from 23andMe as a precautionary measure. Remember, Stay a Little Paranoid X: This Week Health LinkedIn: This Week
Mar 24, 2025·2 Minute Drill
Drex discusses Google's massive $32 billion acquisition of cloud security company Wiz and what it means for healthcare cloud infrastructure. Learn about the recent CISA employee firing controversy and subsequent court-ordered reinstatements. Plus, discover how states are competing to recruit displaced federal cybersecurity professionals - creating a potential hiring opportunity for healthcare organizations. Remember, Stay a Little Paranoid X: This Week Health LinkedIn: This Week Heal
Mar 20, 2025·2 Minute Drill
2Drex discuss CSA's decision to cut $10 million in funding to the Center for Internet Security's management of MS-ISAC and EI-ISAC programs, which coordinate critical threat information for state, local, and election infrastructure. Meanwhile, a new ransomware gang called Mora 0 0 1 is targeting 49 firewalls by exploiting known vulnerabilities to gain initial network access. The FBI and CISA have also issued warnings about the Medusa ransomware-as-a-service, which has attacked over 300 victims a
Mar 14, 2025·2 Minute Drill
Critical Microsoft Patch Tuesday release includes near-record number of zero-days with six already being exploited. Apple releases patches for Safari browser engine affecting all devices. Analysis of leaked Black Basta ransomware gang chat logs reveals valuable insights on attack strategies and evasion techniques. Recent DDoS attack against X (formerly Twitter) remains largely unattributed despite claims from hacker group DarkStorm and debunked assertions about Ukrainian IP addresses. Remember,
Mar 12, 2025·2 Minute Drill
Drex analyzes three significant cybersecurity developments: the widespread outage of a major social media platform (formerly Twitter) caused by a DDoS attack claimed by hacker group Dark Storm Team, NIST's recent addition of the "govern function" to their cybersecurity framework that emphasizes optimizing existing tools over acquiring new ones, and concerning reports that OpenAI's latest GPT-4.5 model hallucinates 37% of the time, raising important questions about AI reliability for everyday use
Mar 7, 2025·2 Minute Drill
Broadcom reports three actively exploited zero-day vulnerabilities affecting VMware ESXi, Workstation, and Fusion products that require immediate patching. Leaked chat logs from the Black Basta ransomware group reveal internal conflicts, operational tactics, and efforts to circumvent cybersecurity tools. Lastly, A demonstration of Sesame's new voice AI technology shows concerningly realistic capabilities that could potentially lead users to inadvertently share private information. Remember, Stay
Mar 3, 2025·2 Minute Drill
According to Kroll's cyber risk team, healthcare leads as the most breached industry in 2024 at 23% of all incidents, with medical data valued up to $1,000 on dark markets compared to just $5 for credit card information. Drex provides updates on the Change Healthcare breach one year later, noting that notifications are still ongoing for the incident that affected nearly half of all Americans. The episode concludes with a spotlight on "Have I Been Pwned," a valuable resource for checking if your
Feb 27, 2025·2 Minute Drill
Darkula's new "Darkula Suite" phishing-as-a-service platform that makes creating sophisticated phishing campaigns accessible to non-technical users. Then, Warby Parker's $1.5 million fine for a 2018 security breach affecting nearly 200,000 customers. Lastly, CrowdStrike's Chief Security Officer Sean Henry announcing his retirement after serving as a key executive at the company Remember, Stay a Little Paranoid Subscribe: This Week Health Twitter: This Week Health LinkedIn: Th
Feb 21, 2025·2 Minute Drill
Drex covers major developments in cybersecurity including significant staffing changes at CISA, where the DOJ has laid off 130 employees and controversially granted facility access to 19-year-old Edward Korrestien. We also discuss a critical vulnerability (CVE-2025-0111) discovered in Palo Alto firewalls that requires immediate attention. The episode concludes with news of HealthNet Federal Services receiving an $11.2M fine for falsely certifying cybersecurity compliance in their TRICARE program
Feb 19, 2025·2 Minute Drill
Drex covers the alleged breach of OmniGPT affecting 30,000+ users with 34M+ exposed messages. Then, sophisticated deepfake scam using Italian defense minister's voice targeting business leaders. Lastly, a growing partnership between financial cybercriminals and state-sponsored hackers from Russia, China, and Iran. Remember, Stay a Little Paranoid Subscribe: This Week Health Twitter: This Week Health LinkedIn: This Week Health Donate: Alex’s Lemonade Stand: Foundation f
Page 9 of 18