Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Health IT News
Browse by topic
Most-read stories in the last 7 days
1,000 stories
May 27, 2025·Help Net Security
Recent layoffs in the tech industry have intensified cybersecurity concerns as IT teams face the urgent task of revoking access for departing employees. With over half of tech hiring managers expecting more layoffs, the necessity of protecting sensitive company data is critical, especially since not all employee exits are amicable. The risk of insider threats is significant; a notable 83% of organizations experienced insider attacks in 2024, often involving the mishandling of sensitive data. As IT teams navigate the complexities of offboarding during these transitions amid regular duties, the risk of oversights in securing accounts and devices increases, underscoring the need for immediate action to mitigate potential breaches.
May 26, 2025·Justice.gov
A recent indictment has charged 12 individuals, both American and foreign, with involvement in a cyber-enabled racketeering conspiracy that allegedly generated over $263 million through cryptocurrency theft, money laundering, and home break-ins. The unsealed indictment details a complex operation beginning in October 2023, with roles including hackers and manipulators who leveraged online gaming friendships to access sensitive information from victims. Key incidents include the theft of over 4,100 Bitcoin valued at over $230 million from a victim in Washington, D.C. Some defendants were arrested in California, while two are believed to be in Dubai, and charges include RICO conspiracy and obstruction of justice.
May 26, 2025·Wired
A recently discovered database containing 184 million records has sparked concerns over the security of login credentials for various digital services, including Apple, Facebook, and Google. Identified by security researcher Jeremiah Fowler, the database's unknown origin makes it challenging to ascertain how the sensitive information was obtained, raising possibilities of either research compilation or cybercriminal theft via malware. Fowler's analysis indicated that records included plaintext passwords for numerous accounts across several platforms, alongside government email addresses that suggest potential national security risks. Following the discovery, Fowler reported the database to its hosting provider, World Host Group, which subsequently disabled access after initial silence until contacted by WIRED.
May 26, 2025·Security Boulevard
A survey by Oxford Economics for Splunk found that many cybersecurity professionals are dedicating more time to managing tools than to defending against cyber threats, with nearly half of the 2,058 surveyed security leaders citing tool maintenance as a primary inefficiency. The survey revealed that 59% of respondents feel overwhelmed by too many alerts and struggle with false positives, while over half report feeling overworked, with some considering leaving the field due to stress and unrealistic expectations. The findings indicate that tool sprawl is a significant issue, impacting data management and hindering effective response to cyberattacks, with two-thirds of organizations experiencing a data breach in the past year.
May 22, 2025·Kettering Health
Kettering Health is responding to a technology outage resulting from unauthorized network access, leading to widespread service disruptions. While emergency services continue to operate, all elective inpatient and outpatient procedures have been canceled, and the organization is working to reschedule them. Kettering Health is directly communicating with patients about rescheduling but faces challenges in this process. The organization has confirmed that personal applications like MyChart remain secure and has advised against communicating through social media. Additionally, it has received reports of scams involving individuals impersonating staff and soliciting payments, prompting a suspension of payment communications until the situation stabilizes. Patients are urged to report any suspicious calls to law enforcement.
May 21, 2025·Becker's Hospital Review
In response to the 2024 ransomware attack on Change Healthcare that affected claims and prescription processing for millions, healthcare leaders are collaborating to strengthen cybersecurity across the sector. The Health Sector Coordinating Council Cybersecurity Working Group is identifying vulnerabilities that could be exploited by hackers and mapping critical healthcare functions to assess risks associated with third-party vendors. The group is working on strategies, including requiring minimum cybersecurity standards for vendors, to enhance incident response capabilities and develop backup plans, ultimately aiming to reduce the cybersecurity risks faced by healthcare organizations.
May 21, 2025·Krebs on Security
KrebsOnSecurity faced a major DDoS attack, reportedly exceeding 6.3 terabits per second, attributed to a new IoT botnet named Aisuru. This assault, significantly larger than previous attacks, was mitigated by Google’s Project Shield. Aisuru exploits compromised IoT devices through default passwords and vulnerabilities, and it resurfaced with improved capabilities after being identified in August 2024. The botnet's operators are publicly marketing their DDoS services on Telegram, indicating a troubling trend in the availability of such attack capabilities.
May 20, 2025·ITPro
NHS England has launched a new cybersecurity charter designed to strengthen the security protocols of its suppliers amid rising ransomware threats. In a communication to vendors, NHS officials stressed the urgent need for adherence to eight security measures, emphasizing collaboration across the supply chain to ensure patient care is protected. Key requirements include keeping systems updated with security patches, achieving compliance with the Data Security and Protection Toolkit, implementing multi-factor authentication, and maintaining effective cyber monitoring. The charter also highlights the necessity of data backups and business continuity planning, insisting that suppliers establish strategies for quick recovery of critical systems following a cyber incident.
May 20, 2025·WHIO
Kettering Health, a major hospital network in the Miami Valley, has experienced a cyberattack that has disrupted its systems and affected local fire and EMS services, necessitating the rerouting of patients to other hospitals. While emergency rooms and clinics continue to operate, many inpatient and outpatient procedures have been canceled, and communication has been hampered by issues with the call center. Kettering Health is committed to maintaining patient care during this incident and is actively working with authorities to address the situation, as local news sources seek further information on the attack's impact.
May 19, 2025·The Baltimore Banner
In February 2025, the Anne Arundel County Department of Health was hit by a ransomware attack that compromised confidential patient data, prompting the temporary shutdown of government buildings and disruption of services. The breach, detected on February 22, was traced back to unauthorized network access from January 28 to February 22, affecting files containing sensitive information such as names, addresses, and medical diagnoses, though financial data was reportedly safe. While investigations by cybersecurity experts and law enforcement are ongoing, county officials have not disclosed if a ransom payment was made. Residents are advised to monitor their financial activities for potential identity theft, and officials are taking steps to improve security measures.
May 19, 2025·Forbes
The RSA Conference 2025 in San Francisco convened over 45,000 participants to explore key trends in cybersecurity, particularly the role of artificial intelligence (AI). The event emphasized AI's dual nature as both a protector and a target within enterprise systems, as well as a tool for cybercriminals. Discussions highlighted the importance of implementing specialized security protocols to defend AI systems, which are increasingly managing tasks autonomously. Companies such as SentinelOne and Palo Alto Networks showcased AI-driven security solutions that automate threat detection and response, while concerns were raised about AI's use in sophisticated cyberattacks. The conference also noted the growing trend of platformization in cybersecurity, offering integrated security functions that enhance threat detection and streamline management.
May 19, 2025·BankInfoSecurity
Agentic AI has reported a data breach impacting over 483,000 patients of New York's Catholic Health, caused by Serviceaide, the firm responsible for its data management. The breach involved sensitive patient information being unintentionally exposed online from September to November 2024, which included names, Social Security numbers, and medical records. Following the breach, Serviceaide secured the database and launched an investigation, which found no evidence of data copying, though it could not discard the possibility completely. To address the incident, Serviceaide has strengthened its security measures and is providing affected individuals with a year of free credit and identity monitoring. Catholic Health has also publicly acknowledged the breach.
May 18, 2025·Health-ISAC
Health-ISAC's latest white paper, "Artificial Intelligence and Digital Identity: A CISO’s Guide to Implementing Advanced Technologies to Fight Cyber Attacks and Fraud," highlights the growing risks that Generative Artificial Intelligence (Gen AI) poses to digital identity systems. The report discusses emerging threats such as deepfakes and phishing and emphasizes the importance of using AI not only to defend against such attacks but also to enhance security measures, particularly in the health sector. Key recommendations include the implementation of liveness detection in biometric systems to ensure identity verification accuracy and security.
May 18, 2025·TechTarget
The National Institute of Standards and Technology (NIST) has published a draft update to the NIST Privacy Framework (PWF), the first revision since its original release in January 2020. The updated version 1.1 aims to improve usability and align more closely with the NIST Cybersecurity Framework (CSF), incorporating revisions to its structure and content, along with new sections on artificial intelligence and privacy risk management. The PWF maintains a sector-agnostic approach, allowing organizations to effectively manage privacy risks and enhance transparency while integrating their privacy and security practices.
May 18, 2025·CSO
Recent data from KnowBe4’s Q1 2025 Phishing Report indicates a troubling trend in phishing attacks, particularly those impersonating internal IT and HR departments. Over 60% of successful phishing emails referenced internal teams, with nearly half specifically citing HR, using enticing subject lines related to common workplace activities to lure employees into clicking malicious links. These sophisticated tactics exploit the trust employees have in their internal teams, while fake login pages imitating popular platforms like Microsoft and Google continue to deceive users. The report emphasizes the necessity for organizations to enhance employee training and awareness to recognize potential phishing threats, advocating for robust security measures and consistent training sessions to mitigate the risk of successful attacks.
May 15, 2025·CIODive
A recent survey by Flexential highlights the growing cybersecurity concerns as organizations invest more in artificial intelligence (AI). With over half of IT decision-makers acknowledging the handling of more sensitive data, the risks associated with data storage near network edges are evident. The survey also pointed out that the complexity of AI applications expands the potential attack surface, with over 40% of cybersecurity teams lacking the expertise to safeguard these technologies. Staffing shortages in both AI and cybersecurity further exacerbate these vulnerabilities, prompting a pressing need for enhanced cybersecurity measures and increased expertise in these fields, as indicated by supporting studies on privacy and data security.
May 15, 2025·The Record
Alabama's Office of Information Technology (OIT) is addressing a cybersecurity incident identified on May 9, which has not significantly disrupted state services. To manage the situation, the OIT has hired two third-party incident response teams and mandated a password reset for all state employees after concerns about potential password compromises were raised. While details of the incident remain unclear, Governor Kay Ivey has advised caution regarding suspicious emails, and the OIT asserts there is currently no evidence of exfiltration of personally identifiable information. The agency aims to maintain transparency and ensure the continuity of state operations.
May 14, 2025·Cybersecurity Dive
A coalition of 52 U.S. organizations is calling on Congress to reauthorize the Cybersecurity Information Sharing Act (CISA) before its September 30 expiration. CISA facilitates the sharing of cyber threat information between businesses and federal agencies while providing legal protections for participating companies. The coalition highlights that without the law, the U.S. could face increased cybersecurity risks and that the ability to share information is crucial for enhancing defensive measures against cyber threats. Originally enacted in 2015, CISA addresses barriers to information sharing that impede efforts to understand and counter cyber threats effectively.
May 14, 2025·Krebs on Security
Microsoft's May 2025 Patch Tuesday updates address over 70 vulnerabilities in Windows and related products, including five zero-day flaws currently being exploited. Among the critical vulnerabilities are two in the Windows Common Log File System (CLFS) driver that could allow attackers to escalate privileges on Windows 10 and 11 systems. Security experts are urging users to apply these patches immediately, as the exploitation window can be narrow, and detailed technical information about the vulnerabilities is limited. In addition to the CLFS issues, other zero-day elevation of privilege flaws have also been patched, emphasizing the importance of prompt updates to mitigate security risks.
May 12, 2025·CyberScoop
A bipartisan Senate bill, introduced by Senators Bill Cassidy and Jacky Rosen, seeks to prevent federal contractors from using the Chinese AI system DeepSeek due to cybersecurity and national security concerns. The legislation aims to protect sensitive federal data from potential access by the Chinese government, specifically targeting DeepSeek and similar models from the firm High Flyer. Cassidy emphasized the need for caution, warning that using DeepSeek in federal contracts could enable China to leverage U.S. data. The bill also allows the Commerce Secretary to issue waivers for security-related testing of AI models and requires a report for Congress on the national security threats posed by AI platforms from adversarial nations like China, Russia, North Korea, and Iran.